{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,7]],"date-time":"2026-05-07T15:20:22Z","timestamp":1778167222957,"version":"3.51.4"},"publisher-location":"Cham","reference-count":24,"publisher":"Springer Nature Switzerland","isbn-type":[{"value":"9783032252906","type":"print"},{"value":"9783032252913","type":"electronic"}],"license":[{"start":{"date-parts":[[2026,1,1]],"date-time":"2026-01-01T00:00:00Z","timestamp":1767225600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2026,1,1]],"date-time":"2026-01-01T00:00:00Z","timestamp":1767225600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2026]]},"DOI":"10.1007\/978-3-032-25291-3_16","type":"book-chapter","created":{"date-parts":[[2026,5,7]],"date-time":"2026-05-07T14:54:17Z","timestamp":1778165657000},"page":"457-480","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["Super-Quadratic Quantum Speed-ups and\u00a0Guessing Many Likely Keys"],"prefix":"10.1007","author":[{"given":"Kaveh","family":"Bashiri","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0009-0001-8970-3153","authenticated-orcid":false,"given":"Timo","family":"Glaser","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-5965-5675","authenticated-orcid":false,"given":"Alexander","family":"May","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-3066-0133","authenticated-orcid":false,"given":"Julian","family":"Nowakowski","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2026,5,8]]},"reference":[{"issue":"35","key":"16_CR1","doi-asserted-by":"publisher","first-page":"6741","DOI":"10.1088\/0305-4470\/34\/35\/302","volume":"34","author":"A Ambainis","year":"2001","unstructured":"Ambainis, A., De Wolf, R.: Average-case quantum query complexity. J. Phys. A: Math. Gen. 34(35), 6741 (2001)","journal-title":"J. Phys. A: Math. Gen."},{"key":"16_CR2","doi-asserted-by":"crossref","unstructured":"Alekhnovich, M.: More on average case vs approximation complexity. In: 44th FOCS, pp. 298\u2013307. IEEE Computer Society Press (2003)","DOI":"10.1109\/SFCS.2003.1238204"},{"issue":"1","key":"16_CR3","doi-asserted-by":"publisher","first-page":"99","DOI":"10.1109\/18.481781","volume":"42","author":"E Arikan","year":"1996","unstructured":"Arikan, E.: An inequality on guessing and its application to sequential decoding. IEEE Trans. Inf. Theory 42(1), 99\u2013105 (1996)","journal-title":"IEEE Trans. Inf. Theory"},{"key":"16_CR4","unstructured":"Albrecht, M. R., Shen, Y.: Quantum augmented dual attack. Cryptology ePrint Archive, Report 2022\/656 (2022)"},{"key":"16_CR5","doi-asserted-by":"crossref","unstructured":"Bos, J., et al.: Crystals-kyber: a CCA-secure module-lattice-based kem. In:2018 IEEE European Symposium on Security and Privacy (EuroS&P), pp. 353\u2013367. IEEE (2018)","DOI":"10.1109\/EuroSP.2018.00032"},{"key":"16_CR6","doi-asserted-by":"crossref","unstructured":"Berry, A.C.: The accuracy of the gaussian approximation to the sum of independent variates. Trans. Am. Math. Soc. 49(1), 122\u2013136 (1941)","DOI":"10.1090\/S0002-9947-1941-0003498-3"},{"key":"16_CR7","unstructured":"Bernstein, D. J.: Asymptotics of hybrid primal lattice attacks. Cryptology ePrint Archive, Report 2023\/1892 (2023)"},{"key":"16_CR8","doi-asserted-by":"publisher","first-page":"53","DOI":"10.1090\/conm\/305\/05215","volume":"305","author":"G Brassard","year":"2002","unstructured":"Brassard, G., Hoyer, P., Mosca, M., Tapp, A.: Quantum amplitude amplification and estimation. Contemp. Math. 305, 53\u201374 (2002)","journal-title":"Contemp. Math."},{"key":"16_CR9","doi-asserted-by":"crossref","unstructured":"Blum, A., Kalai, A., Wasserman, H.: Noise-tolerant learning, the parity problem, and the statistical query model. In: 32nd ACM STOC, pp. 435\u2013440. ACM Press (2000)","DOI":"10.1145\/335305.335355"},{"key":"16_CR10","doi-asserted-by":"crossref","unstructured":"Budroni, A., M\u00e5rtensson, E.: Improved estimation of key enumeration with applications to solving LWE. In: 2023 IEEE International Symposium on Information Theory (ISIT), pp. 495\u2013500 (2023)","DOI":"10.1109\/ISIT54713.2023.10206474"},{"key":"16_CR11","unstructured":"Cover, T. M., Thomas, J.A.: Elements of information theory. John Wiley & Sons, second edition (2006)"},{"key":"16_CR12","series-title":"LNCS","first-page":"412","volume-title":"CANS 21","author":"M D\u00fcrmuth","year":"2021","unstructured":"D\u00fcrmuth, M., Golla, M., Markert, P., May, A., Schlieper, L.: Towards quantum large-scale password guessing on real-world distributions. In: Conti, M., Stevens, M., Krenn, S. (eds.) CANS 21. LNCS, vol. 13099, pp. 412\u2013431. Springer, Cham (2021)"},{"key":"16_CR13","series-title":"Part III, volume 14083 of LNCS","doi-asserted-by":"publisher","first-page":"37","DOI":"10.1007\/978-3-031-38548-3_2","volume-title":"CRYPTO 2023","author":"L Ducas","year":"2023","unstructured":"Ducas, L., Pulles, L.N.: Does the dual-sieve attack on learning with errors even work? In: Handschuh, H., Lysyanskaya, A. (eds.) CRYPTO 2023. Part III, volume 14083 of LNCS, pp. 37\u201369. Springer, Cham (2023)"},{"key":"16_CR14","doi-asserted-by":"crossref","unstructured":"Esseen, C.: Fourier analysis of distribution functions. a mathematical study of the laplace-gaussian law (1945)","DOI":"10.1007\/BF02392223"},{"key":"16_CR15","doi-asserted-by":"crossref","unstructured":"Grover, L,K.: A fast quantum mechanical algorithm for database search. In: Gary\u00a0L. Miller, (ed.) Proceedings of the Twenty-Eighth Annual ACM Symposium on the Theory of Computing, Philadelphia, Pennsylvania, USA, May 22-24, 1996, pp. 212\u2013219. ACM (1996)","DOI":"10.1145\/237814.237866"},{"key":"16_CR16","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"52","DOI":"10.1007\/3-540-45682-1_4","volume-title":"ASIACRYPT 2001","author":"J Nicholas","year":"2001","unstructured":"Nicholas, J.: Hopper and Manuel Blum. Secure human identification protocols. In: Boyd, C. (ed.) ASIACRYPT 2001. LNCS, vol. 2248, pp. 52\u201366. Springer, Berlin, Heidelberg (2001)"},{"issue":"5","key":"16_CR17","doi-asserted-by":"publisher","DOI":"10.1103\/PhysRevA.62.052304","volume":"62","author":"P H\u00f8yer","year":"2000","unstructured":"H\u00f8yer, P.: Arbitrary phases in quantum amplitude amplification. Phys. Rev. A 62(5), 052304 (2000)","journal-title":"Phys. Rev. A"},{"key":"16_CR18","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"267","DOI":"10.1007\/BFb0054868","volume-title":"Algorithmic Number Theory","author":"J Hoffstein","year":"1998","unstructured":"Hoffstein, J., Pipher, J., Silverman, J.H.: NTRU: A ring-based public key cryptosystem. In: Buhler, J.P. (ed.) ANTS 1998. LNCS, vol. 1423, pp. 267\u2013288. Springer, Heidelberg (1998). https:\/\/doi.org\/10.1007\/BFb0054868"},{"key":"16_CR19","series-title":"LNCS","first-page":"232","volume-title":"CHES 2017","author":"A H\u00fclsing","year":"2017","unstructured":"H\u00fclsing, A., Rijneveld, J., Schanck, J.M., Schwabe, P.: High-speed key encapsulation from NTRU. In: Fischer, W., Homma, N. (eds.) CHES 2017. LNCS, vol. 10529, pp. 232\u2013252. Springer, Cham (2017)"},{"key":"16_CR20","unstructured":"MATZOV IDF. Report on the security of LWE: improved dual lattice attack (2022)"},{"key":"16_CR21","doi-asserted-by":"crossref","unstructured":"Karenin, A., Kirshanova, E., Nowakowski, J., May, A.: Fast Slicer for Batch-CVP: making lattice hybrid attacks practical. In: International Conference on the Theory and Application of Cryptology and Information Security (ASIACRYPT), to appear (2025)","DOI":"10.1007\/978-981-95-5099-9_4"},{"key":"16_CR22","doi-asserted-by":"crossref","unstructured":"Malone, D., Maher, K.: Investigating the distribution of password choices. In: Proceedings of the 21st international conference on World Wide Web, pp. 301\u2013310 (2012)","DOI":"10.1145\/2187836.2187878"},{"key":"16_CR23","doi-asserted-by":"crossref","unstructured":"Montanaro, A.: Quantum search with advice. In: Theory of Quantum Computation, Communication, and Cryptography: 5th Conference, TQC 2010, Leeds, UK, 13-15 April 2010, Revised Selected Papers 5, pp. 77\u201393. Springer (2011)","DOI":"10.1007\/978-3-642-18073-6_7"},{"key":"16_CR24","doi-asserted-by":"crossref","unstructured":"Oded Regev. New lattice based cryptographic constructions. In: 35th ACM STOC, pp. 407\u2013416. ACM Press (2003)","DOI":"10.1145\/780542.780603"}],"container-title":["Lecture Notes in Computer Science","Advances in Cryptology \u2013 EUROCRYPT 2026"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-032-25291-3_16","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,5,7]],"date-time":"2026-05-07T14:54:28Z","timestamp":1778165668000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-032-25291-3_16"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026]]},"ISBN":["9783032252906","9783032252913"],"references-count":24,"URL":"https:\/\/doi.org\/10.1007\/978-3-032-25291-3_16","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2026]]},"assertion":[{"value":"8 May 2026","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"EUROCRYPT","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Annual International Conference on the Theory and Applications of Cryptographic Techniques","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Rome","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Italy","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2026","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"10 May 2026","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"14 May 2026","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"45","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"eurocrypt2026","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/eurocrypt.iacr.org\/2026\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}