{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,9]],"date-time":"2026-04-09T17:11:34Z","timestamp":1775754694983,"version":"3.50.1"},"publisher-location":"Cham","reference-count":30,"publisher":"Springer Nature Switzerland","isbn-type":[{"value":"9783032226945","type":"print"},{"value":"9783032226952","type":"electronic"}],"license":[{"start":{"date-parts":[[2026,1,1]],"date-time":"2026-01-01T00:00:00Z","timestamp":1767225600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2026,1,1]],"date-time":"2026-01-01T00:00:00Z","timestamp":1767225600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2026]]},"DOI":"10.1007\/978-3-032-22695-2_8","type":"book-chapter","created":{"date-parts":[[2026,4,9]],"date-time":"2026-04-09T16:29:21Z","timestamp":1775752161000},"page":"225-251","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["Generating Falcon Trapdoors via\u00a0Gibbs Sampler"],"prefix":"10.1007","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-1461-1473","authenticated-orcid":false,"given":"Chao","family":"Sun","sequence":"first","affiliation":[]},{"ORCID":"https:\/\/orcid.org\/0000-0002-7655-9594","authenticated-orcid":false,"given":"Thomas","family":"Espitau","sequence":"additional","affiliation":[]},{"ORCID":"https:\/\/orcid.org\/0009-0004-0200-2445","authenticated-orcid":false,"given":"Junjie","family":"Song","sequence":"additional","affiliation":[]},{"ORCID":"https:\/\/orcid.org\/0000-0002-4993-9452","authenticated-orcid":false,"given":"Jinguang","family":"Han","sequence":"additional","affiliation":[]},{"ORCID":"https:\/\/orcid.org\/0000-0002-2736-2963","authenticated-orcid":false,"given":"Mehdi","family":"Tibouchi","sequence":"additional","affiliation":[]}],"member":"297","published-online":{"date-parts":[[2026,4,10]]},"reference":[{"key":"8_CR1","unstructured":"Alkim, E., Ducas, L., P\u00f6ppelmann, T., Schwabe, P.: Post-quantum key exchange - A new hope. In: Holz, T., Savage, S. (eds.) USENIX Security 2016, pp. 327\u2013343. USENIX Association (Aug 2016)"},{"issue":"1","key":"8_CR2","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1007\/BF02579403","volume":"6","author":"L Babai","year":"1986","unstructured":"Babai, L.: On lov\u00e1sz\u2019 lattice reduction and the nearest lattice point problem. Combinatorica 6(1), 1\u201313 (1986)","journal-title":"Combinatorica"},{"key":"8_CR3","doi-asserted-by":"crossref","unstructured":"Chen, Y., Genise, N., Mukherjee, P.: Approximate trapdoors for lattices and smaller hash-and-sign signatures. In: Galbraith, S.D., Moriai, S. (eds.) ASIACRYPT 2019, Part III. Lecture Notes in Computer Science, vol. 11923, pp. 3\u201332. Springer (Dec 2019)","DOI":"10.1007\/978-3-030-34618-8_1"},{"key":"8_CR4","doi-asserted-by":"crossref","unstructured":"Ducas, L., Lyubashevsky, V., Prest, T.: Efficient identity-based encryption over NTRU lattices. In: Sarkar, P., Iwata, T. (eds.) ASIACRYPT 2014, Part II. Lecture Notes in Computer Science, vol.\u00a08874, pp. 22\u201341. Springer (Dec 2014)","DOI":"10.1007\/978-3-662-45608-8_2"},{"key":"8_CR5","doi-asserted-by":"crossref","unstructured":"Ducas, L., Nguyen, P.Q.: Learning a zonotope and more: Cryptanalysis of ntrusign countermeasures. In: Wang, X., Sako, K. (eds.) ASIACRYPT 2012. Lecture Notes in Computer Science, vol.\u00a07658, pp. 433\u2013450. Springer (Dec 2012)","DOI":"10.1007\/978-3-642-34961-4_27"},{"key":"8_CR6","doi-asserted-by":"crossref","unstructured":"Ducas, L., Prest, T.: Fast fourier orthogonalization. In: Abramov, S.A., Zima, E.V., Gao, X. (eds.) ISSAC 2016, pp. 191\u2013198. ACM (Jul 2016)","DOI":"10.1145\/2930889.2930923"},{"key":"8_CR7","doi-asserted-by":"crossref","unstructured":"Espitau, T., et al.: Mitaka: a simpler, parallelizable, maskable variant of falcon. In: Dunkelman, O., Dziembowski, S. (eds.) EUROCRYPT 2022, Part III. Lecture Notes in Computer Science, vol. 13277, pp. 222\u2013253. Springer (May \/ Jun 2022)","DOI":"10.1007\/978-3-031-07082-2_9"},{"key":"8_CR8","doi-asserted-by":"crossref","unstructured":"Espitau, T., Nguyen, T.T.Q., Sun, C., Tibouchi, M., Wallet, A.: Antrag: annular NTRU trapdoor generation - making mitaka as secure as falcon. In: Guo, J., Steinfeld, R. (eds.) ASIACRYPT 2023, Part VII. Lecture Notes in Computer Science, vol. 14444, pp. 3\u201336. Springer (Dec 2023)","DOI":"10.1007\/978-981-99-8739-9_1"},{"issue":"2","key":"8_CR9","doi-asserted-by":"publisher","first-page":"240","DOI":"10.46586\/tches.v2022.i2.240-265","volume":"2022","author":"P Fouque","year":"2022","unstructured":"Fouque, P., Kirchner, P., Pornin, T., Yu, Y.: BAT: small and fast KEM over NTRU lattices. IACR Trans. Cryptogr. Hardw. Embed. Syst. 2022(2), 240\u2013265 (2022)","journal-title":"IACR Trans. Cryptogr. Hardw. Embed. Syst."},{"key":"8_CR10","doi-asserted-by":"crossref","unstructured":"Fouque, P., Kirchner, P., Tibouchi, M., Wallet, A., Yu, Y.: Key recovery from gram-schmidt norm leakage in hash-and-sign signatures over NTRU lattices. In: Canteaut, A., Ishai, Y. (eds.) EUROCRYPT 2020, Part III. Lecture Notes in Computer Science, vol. 12107, pp. 34\u201363. Springer (May 2020)","DOI":"10.1007\/978-3-030-45727-3_2"},{"key":"8_CR11","doi-asserted-by":"publisher","unstructured":"Gamerman, D., Lopes, H.: Markov Chain Monte Carlo: Stochastic Simulation for Bayesian Inference, Second Edition. CRC Press (05 2006). https:\/\/doi.org\/10.1201\/9781482296426","DOI":"10.1201\/9781482296426"},{"issue":"6","key":"8_CR12","doi-asserted-by":"publisher","first-page":"721","DOI":"10.1109\/TPAMI.1984.4767596","volume":"6","author":"S Geman","year":"1984","unstructured":"Geman, S., Geman, D.: Stochastic relaxation, gibbs distributions, and the Bayesian restoration of images. IEEE Trans. Pattern Anal. Mach. Intell. 6(6), 721\u2013741 (1984)","journal-title":"IEEE Trans. Pattern Anal. Mach. Intell."},{"key":"8_CR13","doi-asserted-by":"crossref","unstructured":"Gentry, C., Peikert, C., Vaikuntanathan, V.: Trapdoors for hard lattices and new cryptographic constructions. In: Dwork, C. (ed.) 40th STOC, pp. 197\u2013206. ACM (May 2008)","DOI":"10.1145\/1374376.1374407"},{"key":"8_CR14","doi-asserted-by":"crossref","unstructured":"Gentry, C., Szydlo, M.: Cryptanalysis of the revised NTRU signature scheme. In: Knudsen, L.R. (ed.) EUROCRYPT 2002. Lecture Notes in Computer Science, vol.\u00a02332, pp. 299\u2013320. Springer (Apr \/ May 2002)","DOI":"10.1007\/3-540-46035-7_20"},{"key":"8_CR15","doi-asserted-by":"crossref","unstructured":"Geweke, J.: Evaluating the accuracy of sampling-based approaches to the calculation of posterior moments. In: Bayesian Statistics 4: Proceedings of the Fourth Valencia International Meeting, Dedicated to the memory of Morris H. DeGroot, 1931\u20131989. Oxford University Press (1992)","DOI":"10.1093\/oso\/9780198522669.003.0010"},{"key":"8_CR16","doi-asserted-by":"crossref","unstructured":"Goldreich, O., Goldwasser, S., Halevi, S.: Public-key cryptosystems from lattice reduction problems. In: Jr., B.S.K. (ed.) CRYPTO 1997. Lecture Notes in Computer Science, vol.\u00a01294, pp. 112\u2013131. Springer (Aug 1997)","DOI":"10.1007\/BFb0052231"},{"issue":"3","key":"8_CR17","doi-asserted-by":"publisher","first-page":"141","DOI":"10.46586\/tches.v2022.i3.141-164","volume":"2022","author":"M Guerreau","year":"2022","unstructured":"Guerreau, M., Martinelli, A., Ricosset, T., Rossi, M.: The hidden parallelepiped is back again: Power analysis attacks on falcon. IACR Trans. Cryptogr. Hardw. Embed. Syst. 2022(3), 141\u2013164 (2022)","journal-title":"IACR Trans. Cryptogr. Hardw. Embed. Syst."},{"issue":"6","key":"8_CR18","doi-asserted-by":"publisher","first-page":"1109","DOI":"10.1287\/opre.31.6.1109","volume":"31","author":"P Heidelberger","year":"1983","unstructured":"Heidelberger, P., Welch, P.D.: Simulation run length control in the presence of an initial transient. Oper. Res. 31(6), 1109\u20131144 (1983)","journal-title":"Oper. Res."},{"key":"8_CR19","doi-asserted-by":"crossref","unstructured":"Hoffstein, J., Howgrave-Graham, N., Pipher, J., Silverman, J.H., Whyte, W.: NTRUSIGN: digital signatures using the NTRU lattice. In: Joye, M. (ed.) CT-RSA 2003. Lecture Notes in Computer Science, vol.\u00a02612, pp. 122\u2013140. Springer (Apr 2003)","DOI":"10.1007\/3-540-36563-X_9"},{"key":"8_CR20","doi-asserted-by":"crossref","unstructured":"Lin, X., et al.: Cryptanalysis of the peregrine lattice-based signature scheme. In: Tang, Q., Teague, V. (eds.) PKC 2024, Part I. Lecture Notes in Computer Science, vol. 14601, pp. 387\u2013412. Springer (Apr 2024)","DOI":"10.1007\/978-3-031-57718-5_13"},{"key":"8_CR21","doi-asserted-by":"crossref","unstructured":"Micciancio, D., Walter, M.: Practical, predictable lattice basis reduction. In: Fischlin, M., Coron, J. (eds.) EUROCRYPT 2016, Part I. Lecture Notes in Computer Science, vol.\u00a09665, pp. 820\u2013849. Springer (May 2016)","DOI":"10.1007\/978-3-662-49890-3_31"},{"key":"8_CR22","doi-asserted-by":"crossref","unstructured":"Nguyen, P.Q., Regev, O.: Learning a parallelepiped: Cryptanalysis of GGH and NTRU signatures. In: Vaudenay, S. (ed.) EUROCRYPT 2006. Lecture Notes in Computer Science, vol.\u00a04004, pp. 271\u2013288. Springer (May \/ Jun 2006)","DOI":"10.1007\/11761679_17"},{"key":"8_CR23","doi-asserted-by":"crossref","unstructured":"Pornin, T., Prest, T.: More efficient algorithms for the NTRU key generation using the field norm. In: Lin, D., Sako, K. (eds.) PKC 2019, Part II. Lecture Notes in Computer Science, vol. 11443, pp. 504\u2013533. Springer (Apr 2019)","DOI":"10.1007\/978-3-030-17259-6_17"},{"key":"8_CR24","doi-asserted-by":"crossref","unstructured":"Prest, T.: Sharper bounds in lattice-based cryptography using the r\u00e9nyi divergence. In: Takagi, T., Peyrin, T. (eds.) ASIACRYPT 2017, Part I. Lecture Notes in Computer Science, vol. 10624, pp. 347\u2013374. Springer (Dec 2017)","DOI":"10.1007\/978-3-319-70694-8_13"},{"key":"8_CR25","unstructured":"Prest, T., et al.: FALCON. Tech. rep., National Institute of Standards and Technology (2022). https:\/\/csrc.nist.gov\/Projects\/post-quantum-cryptography\/selected-algorithms-2022"},{"issue":"11","key":"8_CR26","doi-asserted-by":"publisher","first-page":"1","DOI":"10.18637\/jss.v021.i11","volume":"21","author":"BJ Smith","year":"2007","unstructured":"Smith, B.J.: BOA: an R package for MCMC output convergence assessment and posterior inference. J. Stat. Softw. 21(11), 1\u201337 (2007)","journal-title":"J. Stat. Softw."},{"key":"8_CR27","doi-asserted-by":"crossref","unstructured":"Stehl\u00e9, D., Steinfeld, R.: Making NTRU as secure as worst-case problems over ideal lattices. In: Paterson, K.G. (ed.) EUROCRYPT 2011. Lecture Notes in Computer Science, vol.\u00a06632, pp. 27\u201347. Springer (May 2011)","DOI":"10.1007\/978-3-642-20465-4_4"},{"key":"8_CR28","doi-asserted-by":"crossref","unstructured":"Yu, Y., Ducas, L.: Learning strikes again: The case of the DRS signature scheme. In: Peyrin, T., Galbraith, S.D. (eds.) ASIACRYPT 2018, Part II. Lecture Notes in Computer Science, vol. 11273, pp. 525\u2013543. Springer (Dec 2018)","DOI":"10.1007\/978-3-030-03329-3_18"},{"key":"8_CR29","doi-asserted-by":"crossref","unstructured":"Zhang, S., Jia, H., Ran, D., Yu, Y., Yu, Y., Wang, X.: GPV preimage sampling with weak smoothness and its applications to lattice signatures. In: Hanaoka, G., Yang, B. (eds.) ASIACRYPT 2025, Part III. Lecture Notes in Computer Science, vol. 16247, pp. 233\u2013264. Springer (Dec 2025)","DOI":"10.1007\/978-981-95-5099-9_8"},{"key":"8_CR30","doi-asserted-by":"crossref","unstructured":"Zhang, S., Lin, X., Yu, Y., Wang, W.: Improved power analysis attacks on falcon. In: Hazay, C., Stam, M. (eds.) EUROCRYPT 2023, Part IV. Lecture Notes in Computer Science, vol. 14007, pp. 565\u2013595. Springer (Apr 2023)","DOI":"10.1007\/978-3-031-30634-1_19"}],"container-title":["Lecture Notes in Computer Science","Post-Quantum Cryptography"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-032-22695-2_8","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,4,9]],"date-time":"2026-04-09T16:29:28Z","timestamp":1775752168000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-032-22695-2_8"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026]]},"ISBN":["9783032226945","9783032226952"],"references-count":30,"URL":"https:\/\/doi.org\/10.1007\/978-3-032-22695-2_8","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2026]]},"assertion":[{"value":"10 April 2026","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"PQCrypto","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Post-Quantum Cryptography","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Saint-Malo","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"France","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2026","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"14 April 2026","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"16 April 2026","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"17","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"pqcrypto2026","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}