A Note on Cryptanalysis of the Preliminary Version of the NTRU Signature Scheme.

Ilya Mironov · 2001

In this paper a preliminary version of the NTRU signature scheme is cryptanalyzed. The attack exploits a correlation between some bits of a signature and coecients of a secret random polynomial. The attack does not apply to the next version of the signature scheme. 1

Read the paper · More papers on PaperTik