Practical cryptanalysis of SFLASH

  • Authors:
  • Vivien Dubois;Pierre-Alain Fouque;Adi Shamir;Jacques Stern

  • Affiliations:
  • École Normale Supérieure, Département d'Informatique, Paris cedex 05, France;École Normale Supérieure, Département d'Informatique, Paris cedex 05, France;École Normale Supérieure, Département d'Informatique, Paris cedex 05, France and Weizmann Institute of Science;École Normale Supérieure, Département d'Informatique, Paris cedex 05, France

  • Venue:
  • CRYPTO'07 Proceedings of the 27th annual international cryptology conference on Advances in cryptology
  • Year:
  • 2007

Quantified Score

Hi-index 0.00

Visualization

Abstract

In this paper, we present a practical attack on the signature scheme SFLASH proposed by Patarin, Goubin and Courtois in 2001 following a design they had introduced in 1998. The attack only needs the public key and requires about one second to forge a signature for any message, after a one-time computation of several minutes. It can be applied to both SFLASHv2 which was accepted by NESSIE, as well as to SFLASHv3 which is a higher security version.