Post-Quantum Cryptography: 11th International Conference, PQCrypto 2020, Paris, France, April 15–17, 2020, Proceedings

Jintai Ding,Jean-Pierre Tillich,Elisa Bertino
DOI: https://doi.org/10.1007/978-3-030-44223-1
2020-01-01
Abstract:We address the problem of decoding Gabidulin codes beyond their unique error-correction radius. The complexity of this problem is of importance to assess the security of some rank-metric code-based cryptosystems. We propose an approach that introduces row or column erasures to decrease the rank of the error in order to use any proper polynomial-time Gabidulin code error-erasure decoding algorithm. The expected work factor of this new randomized decoding approach is a polynomial term times qm(n−k)−w(n+m)+w 2+min{2ξ( n+k 2 −ξ),wk}, where n is the code length, q the size of the base field, m the extension degree of the field, k the code dimension, w the number of errors, and ξ := w− n−k 2 . It improves upon generic rank-metric decoders by an exponential factor.
What problem does this paper attempt to address?