Practical and Theoretical Cryptanalysis of VOX

Hao Guo, Yi Jin, Yuansheng Pan, Xiaoou He, Boru Gong, Jintai Ding*

*Corresponding author for this work

Research output: Chapter in Book or Report/Conference proceedingConference Proceedingpeer-review

Abstract

VOX is a UOV-like hash-and-sign signature scheme from the Multivariate Quadratic (MQ) family, which has been submitted to NIST Post-Quantum Cryptography Project, in response to NIST’s Call for Additional Digital Signature Schemes for the PQC Standardization Process. In 2023, the submitters of VOX updated the sets of recommended parameters of VOX, due to the rectangular MinRank attack proposed by Furue and Ikematsu. In this work we demonstrate the insecurity of the updated VOX from both the practical and the theoretical aspects. First, we conduct a practical MinRank attack against VOX, which uses multiple matrices from matrix deformation of public key to form a large rectangular matrix and evaluate the rank of this new matrix. By using Kipnis–Shamir method and Gröbner basis calculation only instead of support-minors method, our experiment shows it could recover, within two seconds, the secret key of almost every updated recommended instance of VOX. Moreover, we propose a theoretical analysis on VOX by expressing public/secret key as matrices over a smaller field to find a low-rank matrix, resulting in a more precise estimation on the concrete hardness of VOX; for instance, the newly recommended VOX instance claimed to achieve NIST security level 3 turns out to be 69-bit-hard, as our analysis shows.

Original languageEnglish
Title of host publicationPost-Quantum Cryptography - 15th International Workshop, PQCrypto 2024, Proceedings
EditorsMarkku-Juhani Saarinen, Daniel Smith-Tone, Daniel Smith-Tone
PublisherSpringer Science and Business Media Deutschland GmbH
Pages186-208
Number of pages23
ISBN (Print)9783031627453
DOIs
Publication statusPublished - 2024
Externally publishedYes
Event15th International Conference on Post-Quantum Cryptography, PQCrypto 2024 - Oxford, United Kingdom
Duration: 12 Jun 202414 Jun 2024

Publication series

NameLecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
Volume14772 LNCS
ISSN (Print)0302-9743
ISSN (Electronic)1611-3349

Conference

Conference15th International Conference on Post-Quantum Cryptography, PQCrypto 2024
Country/TerritoryUnited Kingdom
CityOxford
Period12/06/2414/06/24

Keywords

  • MPKC
  • PQC
  • VOX

Fingerprint

Dive into the research topics of 'Practical and Theoretical Cryptanalysis of VOX'. Together they form a unique fingerprint.

Cite this