Cryptanalysis of the SFLASH Signature Scheme

  • Authors:
  • Vivien Dubois;Pierre-Alain Fouque;Adi Shamir;Jacques Stern

  • Affiliations:
  • École normale supérieure, Paris, France 75005;École normale supérieure, Paris, France 75005;École normale supérieure, Paris, France 75005 and Weizmann Institute of Science, Israel;École normale supérieure, Paris, France 75005

  • Venue:
  • Information Security and Cryptology
  • Year:
  • 2007

Quantified Score

Hi-index 0.00

Visualization

Abstract

SFLASH is a signature scheme proposed by Patarin, Goubin and Courtois in 2001 [9,7] following a design they had introduced in 1998 [8]. SFLASH is reputed for being very fast and has been recommended by the NESSIE European Consortium since 2003 as the best known solution for implementation on low cost smart cards [5]. In this abstract, we present new attacks on the general design proposed by Patarin et al.[8] which allows to forge signatures in a few minutes for practical instantiations including the SFLASH scheme recommended by NESSIE [5].