{"metadata":{"_oai":{"id":"oai:ipsj.ixsq.nii.ac.jp:00224722","sets":["1164:3925:11156:11157"]},"path":["11157"],"owner":"44499","recid":"224722","title":["Module-LWEに対するχ<sup>2</sup>検定を用いた攻撃"],"pubdate":{"attribute_name":"公開日","attribute_value":"2023-02-27"},"_buckets":{"deposit":"820b1d95-6189-44c9-8628-0b4a16a13409"},"_deposit":{"id":"224722","pid":{"type":"depid","value":"224722","revision_id":0},"owners":[44499],"status":"published","created_by":44499},"item_title":"Module-LWEに対するχ<sup>2</sup>検定を用いた攻撃","author_link":["593176","593177","593175"],"item_titles":{"attribute_name":"タイトル","attribute_value_mlt":[{"subitem_title":"Module-LWEに対するχ<sup>2</sup>検定を用いた攻撃"},{"subitem_title":"Attacks on Module-LWE problem by using χ<sup>2</sup> test","subitem_title_language":"en"}]},"item_keyword":{"attribute_name":"キーワード","attribute_value_mlt":[{"subitem_subject":"耐量子計算機暗号","subitem_subject_scheme":"Other"}]},"item_type_id":"4","publish_date":"2023-02-27","item_4_text_3":{"attribute_name":"著者所属","attribute_value_mlt":[{"subitem_text_value":"現在,大阪大学工学部"},{"subitem_text_value":"現在,大阪大学大学院工学研究科"},{"subitem_text_value":"現在,大阪大学大学院工学研究科/現在,北陸先端科学技術大学院大学"}]},"item_4_text_4":{"attribute_name":"著者所属(英)","attribute_value_mlt":[{"subitem_text_value":"Presently with Osaka University School of Engineering","subitem_text_language":"en"},{"subitem_text_value":"Presently with Osaka University Graduate School of Engineering","subitem_text_language":"en"},{"subitem_text_value":"Presently with Osaka University Graduate School of Engineering / Presently with Japan Advanced Institute of Science and Technology","subitem_text_language":"en"}]},"item_language":{"attribute_name":"言語","attribute_value_mlt":[{"subitem_language":"jpn"}]},"item_publisher":{"attribute_name":"出版者","attribute_value_mlt":[{"subitem_publisher":"情報処理学会","subitem_publisher_language":"ja"}]},"publish_status":"0","weko_shared_id":-1,"item_file_price":{"attribute_name":"Billing file","attribute_type":"file","attribute_value_mlt":[{"url":{"url":"https://ipsj.ixsq.nii.ac.jp/record/224722/files/IPSJ-CSEC23100046.pdf","label":"IPSJ-CSEC23100046.pdf"},"date":[{"dateType":"Available","dateValue":"2025-02-27"}],"format":"application/pdf","billing":["billing_file"],"filename":"IPSJ-CSEC23100046.pdf","filesize":[{"value":"776.6 kB"}],"mimetype":"application/pdf","priceinfo":[{"tax":["include_tax"],"price":"660","billingrole":"5"},{"tax":["include_tax"],"price":"330","billingrole":"6"},{"tax":["include_tax"],"price":"0","billingrole":"30"},{"tax":["include_tax"],"price":"0","billingrole":"44"}],"accessrole":"open_date","version_id":"a1b5fa94-6c99-42a3-896e-98233bfcc035","displaytype":"detail","licensetype":"license_note","license_note":"Copyright (c) 2023 by the Information Processing Society of Japan"}]},"item_4_creator_5":{"attribute_name":"著者名","attribute_type":"creator","attribute_value_mlt":[{"creatorNames":[{"creatorName":"川田, 元"}],"nameIdentifiers":[{}]},{"creatorNames":[{"creatorName":"奥村, 伸也"}],"nameIdentifiers":[{}]},{"creatorNames":[{"creatorName":"宮地, 充子"}],"nameIdentifiers":[{}]}]},"item_4_source_id_9":{"attribute_name":"書誌レコードID","attribute_value_mlt":[{"subitem_source_identifier":"AA11235941","subitem_source_identifier_type":"NCID"}]},"item_4_textarea_12":{"attribute_name":"Notice","attribute_value_mlt":[{"subitem_textarea_value":"SIG Technical Reports are nonrefereed and hence may later appear in any journals, conferences, symposia, etc."}]},"item_resource_type":{"attribute_name":"資源タイプ","attribute_value_mlt":[{"resourceuri":"http://purl.org/coar/resource_type/c_18gh","resourcetype":"technical report"}]},"item_4_source_id_11":{"attribute_name":"ISSN","attribute_value_mlt":[{"subitem_source_identifier":"2188-8655","subitem_source_identifier_type":"ISSN"}]},"item_4_description_7":{"attribute_name":"論文抄録","attribute_value_mlt":[{"subitem_description":"Module-LWE 問題の困難性に基づく暗号は NIST で耐量子計算機暗号標準のひとつに選ばれるなど有用性が高いとされている.耐量子計算機暗号といえど,安全性は一様でないため,耐量子計算機暗号に対して攻撃を行うことで,安全性解析が行われている.本研究では Module-LWE 問題に対して攻撃を行う.既存研究で Module-LWE 問題における秘密鍵ベクトルの次元を 1 に限定した Ring-LWE 探索問題に対して Chen らによりフロベニウス写像を用いることで計算量を削減した x2 攻撃が提案されている.それらの計算量削減手法を踏まえて,まず一般の相対次数 f の Module-LWE 問題への攻撃を行える x2 攻撃手法を提案する.次に Module-LWE 問題に対して相対次数が f=2 のときにフロベニウス写像を用いて攻撃を行い,攻撃に必要なサンプル数を削減する手法を提案する.提案する二つの手法について,一般の相対次数への攻撃手法では現実的な時間では解読できなかった問題が,フロベニウス写像を用いる手法では短時間で解読できることが確認された.","subitem_description_type":"Other"}]},"item_4_description_8":{"attribute_name":"論文抄録(英)","attribute_value_mlt":[{"subitem_description":"Cryptography based on the difficulty of the Module-LWE problem has been selected by NIST as one of the standards for post-quantum computer cryptography, and is considered to be highly useful. Since the security of post-quantum computer cryptography is not uniform, attacks against post-quantum computer cryptography have been conducted to analyze the security of such cryptography. In this study, we attack the Module-LWE problem. In an existing study, Chen et al. proposed a chi-square attack on the Ring-LWE search problem with the dimension of the secret key vector in the Module-LWE problem limited to one by using a Frobenius map to reduce the computational complexity. Based on these reduction methods, we first propose a x2 attack method that can be applied to Module-LWE problem that has general relative degrees f . Next, we propose a method to attack the Module-LWE problem with a Frobenius map when the relative degree is f = 2, thereby reducing the number of samples required for the attack. It is confirmed that the two proposed methods can solve the problem in a short time by using the Frobenius map, while the general attack on the relative degree cannot be solved in a realistic time.","subitem_description_type":"Other"}]},"item_4_biblio_info_10":{"attribute_name":"書誌情報","attribute_value_mlt":[{"bibliographicPageEnd":"6","bibliographic_titles":[{"bibliographic_title":"研究報告コンピュータセキュリティ(CSEC)"}],"bibliographicPageStart":"1","bibliographicIssueDates":{"bibliographicIssueDate":"2023-02-27","bibliographicIssueDateType":"Issued"},"bibliographicIssueNumber":"46","bibliographicVolumeNumber":"2023-CSEC-100"}]},"relation_version_is_last":true,"weko_creator_id":"44499"},"id":224722,"updated":"2025-01-19T13:02:42.583756+00:00","links":{},"created":"2025-01-19T01:24:17.395831+00:00"}