Weak Fields for ECC.

Alfred Menezes, Edlyn Teske, Annegret Weng · 2003

We demonstrate that some finite fields, including F 2 210 , are weak for elliptic curve cryptography in the sense that any instance of the elliptic curve discrete logarithm problem for any elliptic curve over these fields can be solved in significantly less time than it takes Pollard's rho method to solve the hardest instances. We discuss the implications of our observations to elliptic curve cryptography, and list some open problems.

Read the paper · More papers on PaperTik