The Security and Efficiency of Micciancio's Cryptosystem.
Christoph Ludwig · IACR Cryptology ePrint Archive · 2004
We report experiments on the security of the GGH-like cryptosystem proposed by Micciancio. Based on these experiments, we conclude that the system can be securely used only in lattice dimensions ≥ 782. Further experiments on the efficiency of the system show that it requires key sizes of 1MByte and more and that the key generation as well as the decryption take inacceptibly long. Therefore, Micciancio’s cryptosystem seems currently far from being practical.