Cryptanalysis of the Lifted Unbalanced Oil Vinegar Signature Scheme

Jíntai Ding,Joshua D. Deaton,Kurt Schmidt,Vishakha ...,Zheng Zhang
DOI: https://doi.org/10.1007/978-3-030-56877-1_10
2020-01-01
Abstract:In 2017, Ward Beullens et al. submitted Lifted Unbalanced Oil and Vinegar (LUOV) [4], a signature scheme based on the famous multivariate public key cryptosystem (MPKC) called Unbalanced Oil and Vinegar (UOV), to NIST for the competition for post-quantum public key scheme standardization. The defining feature of LUOV is that, though the public key $$\mathscr {P}$$ works in the extension field of degree r of $$\mathbb {F}_2$$ , the coefficients of $$\mathscr {P}$$ come from $$\mathbb {F}_2$$ . This is done to significantly reduce the size of $$\mathscr {P}$$ . The LUOV scheme is now in the second round of the NIST PQC standardization process. In this paper we introduce a new attack on LUOV. It exploits the “lifted” structure of LUOV to reduce direct attacks on it to those over a subfield. We show that this reduces the complexity below the targeted security for the NIST post-quantum standardization competition.
What problem does this paper attempt to address?