RSSAmplifier

Blog

ellipticnews

The Elliptic Curve Cryptography blog

ellipticnews.wordpress.comRSS feed ↗10 posts

Latest posts

Celebrating 40 years of Elliptic Curves in Cryptography (ECC), August 11, 2025

There will be an online event on August 11th (US time) to commemorate and celebrate the founding of elliptic curve cryptography 40 years ago by Victor Miller and Neal Koblitz. Victor and Neal will give some personal reflections on their Continue reading

25th Workshop on Elliptic Curve Cryptography, Taipei, Taiwan, Oct 30 – Nov 1, 2024

Elliptic Curve Cryptography, Oct (28)30 — Nov 1, 2024, Taipei Location: Campus of Academia Sinica. On Oct. 28 and 29, there will be an autumn school on supersingular isogenies. On Oct. 30 — Nov 1 there will be the traditional Continue reading

New cryptanalysis of M-SIDH isogeny cryptography

This post is about the paper A polynomial time attack on instances of M-SIDH and FESTA by Wouter Castryck and Frederik Vercauteren. As we all know, SIDH was broken in 2022 by using knowledge of exact images of torsion points Continue reading

SIAM Conference on Applied Algebraic Geometry (AG23)

The SIAM conference on Applied Algebraic Geometry took place in Eindhoven last week. The mini symposia included: Despite having promised myself to attend talks outside of my domain, I ended up attending all the talks in the Applications of Algebraic Continue reading

Some comments on the CSIDH group action

Lorenz Panny recently wrote a detailed and interesting blog post with the title CSI‑FiSh really isn t polynomial‑time. The purpose of this post is to give some more context and discussion, and mention some recent papers. CSIDH is an isogeny-based primitive. Continue reading

Equivalence between CDH and DLP

(Apologies I wrote this quickly and there may be typos.) The paper Dlog is Practically as Hard (or Easy) as DH – Solving Dlogs via DH Oracles on EC Standards by Alexander May and Carl Richard Theodor Schneider seems to Continue reading

EdDSA standardized

A new version of the NIST Federal Information Processing Standard (FIPS) for Digital Signatures has been published. Also see here. This version includes EdDSA. There are (at least) two notable features of EdDSA. First, it is more closely related to Continue reading

Attacks on SIDH/SIKE

You may feel like you are having trouble keeping up with the news on SIDH/SIKE. So am I! I hope this blog post doesn t instantly become obsolete due to new advances. To recall, there are now three preprints giving attacks Continue reading

Breaking supersingular isogeny Diffie-Hellman (SIDH)

The paper An efficient key recovery attack on SIDH by Wouter Castryck and Thomas Decru is a major breakthrough in isogeny cryptanalysis. This relates to the SIDH protocol by Jao and De Feo, and the NIST round 4 finalist SIKE. Continue reading

Hertzbleed Attack

I woke up to the news of a new form of timing-side-channel attack based on the dynamic frequency scaling of modern x86 processors. This is the Hertzbleed attack, which will be presented at the USENIX Security Symposium in Boston in Continue reading