{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,22]],"date-time":"2026-05-22T03:06:35Z","timestamp":1779419195278,"version":"3.53.1"},"publisher-location":"Cham","reference-count":37,"publisher":"Springer Nature Switzerland","isbn-type":[{"value":"9783032267306","type":"print"},{"value":"9783032267313","type":"electronic"}],"license":[{"start":{"date-parts":[[2026,1,1]],"date-time":"2026-01-01T00:00:00Z","timestamp":1767225600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2026,1,1]],"date-time":"2026-01-01T00:00:00Z","timestamp":1767225600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2026]]},"DOI":"10.1007\/978-3-032-26731-3_16","type":"book-chapter","created":{"date-parts":[[2026,5,22]],"date-time":"2026-05-22T02:40:55Z","timestamp":1779417655000},"page":"480-509","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["Attacks on\u00a0PRISM-id via\u00a0Torsion over\u00a0Small Extension Fields"],"prefix":"10.1007","author":[{"given":"Kohei","family":"Nakagawa","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-0202-8918","authenticated-orcid":false,"given":"Hiroshi","family":"Onuki","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2026,5,22]]},"reference":[{"key":"16_CR1","unstructured":"Aardal, M.A., et al.: SQIsign. Technical report, National Institute of Standards and Technology (2024). https:\/\/csrc.nist.gov\/Projects\/pqc-dig-sig\/round-2-additional-signatures"},{"issue":"11","key":"16_CR2","doi-asserted-by":"publisher","first-page":"2829","DOI":"10.1109\/TC.2013.145","volume":"63","author":"G Adj","year":"2014","unstructured":"Adj, G., Rodr\u00edguez-Henr\u00edquez, F.: Square root computation over even extension fields. IEEE Trans. Comput. 63(11), 2829\u20132841 (2014). https:\/\/doi.org\/10.1109\/TC.2013.145","journal-title":"IEEE Trans. Comput."},{"key":"16_CR3","doi-asserted-by":"publisher","first-page":"300","DOI":"10.1007\/978-3-031-91826-1_10","volume-title":"Public-Key Cryptography - PKC 2025","author":"A Basso","year":"2025","unstructured":"Basso, A., et al.: PRISM: simple and compact identification and signatures from large prime degree isogenies. In: Jager, T., Pan, J. (eds.) Public-Key Cryptography - PKC 2025, pp. 300\u2013332. Springer Nature Switzerland, Cham (2025)"},{"key":"16_CR4","doi-asserted-by":"publisher","unstructured":"Basso, A., et al.: SQIsign2D-West - the fast, the small, and the safer. In: Chung, K.M., Sasaki, Y. (eds.) ASIACRYPT\u00a02024, Part\u00a0III. LNCS, vol. 15486, pp. 339\u2013370. Springer, Singapore (2024). https:\/\/doi.org\/10.1007\/978-981-96-0891-1_11","DOI":"10.1007\/978-981-96-0891-1_11"},{"key":"16_CR5","doi-asserted-by":"publisher","unstructured":"Basso, A., Maino, L.: POK\u00c9: A compact and efficient PKE from higher-dimensional isogenies. In: Fehr, S., Fouque, P.A. (eds.) EUROCRYPT\u00a02025, Part\u00a0II. LNCS, vol. 15602, pp. 94\u2013123. Springer, Cham (2025). https:\/\/doi.org\/10.1007\/978-3-031-91124-8_4","DOI":"10.1007\/978-3-031-91124-8_4"},{"key":"16_CR6","doi-asserted-by":"publisher","unstructured":"Bernstein, D.J., De\u00a0Feo, L., Leroux, A., Smith, B.: Faster computation of isogenies of large prime degree. In: Galbraith, S. (ed.) ANTS-XIV - 14th Algorithmic Number Theory Symposium. Proceedings of the Fourteenth Algorithmic Number Theory Symposium (ANTS-XIV), vol.\u00a04, pp. 39\u201355. Mathematical Sciences Publishers, Auckland, New Zealand (2020). https:\/\/doi.org\/10.2140\/obs.2020.4.39, https:\/\/hal.inria.fr\/hal-02514201","DOI":"10.2140\/obs.2020.4.39"},{"key":"16_CR7","doi-asserted-by":"publisher","unstructured":"Biasse, J.F., Jao, D., Sankar, A.: A quantum algorithm for computing isogenies between supersingular elliptic curves. In: Meier, W., Mukhopadhyay, D. (eds.) INDOCRYPT\u00a02014. LNCS, vol.\u00a08885, pp. 428\u2013442. Springer, Cham (2014). https:\/\/doi.org\/10.1007\/978-3-319-13039-2_25","DOI":"10.1007\/978-3-319-13039-2_25"},{"key":"16_CR8","unstructured":"Boneh, D., Shoup, V.: A graduate course in applied cryptography. Draft 0.5 (2020)"},{"key":"16_CR9","doi-asserted-by":"publisher","unstructured":"Castryck, W., Decru, T.: An efficient key recovery attack on SIDH. In: Hazay, C., Stam, M. (eds.) EUROCRYPT\u00a02023, Part\u00a0V. LNCS, vol. 14008, pp. 423\u2013447. Springer, Cham (2023). https:\/\/doi.org\/10.1007\/978-3-031-30589-4_15","DOI":"10.1007\/978-3-031-30589-4_15"},{"key":"16_CR10","volume-title":"A course in computational algebraic number theory","author":"H Cohen","year":"2010","unstructured":"Cohen, H.: A course in computational algebraic number theory, vol. 138. Springer, Berlin, Heidelberg (2010)"},{"issue":"294","key":"16_CR11","doi-asserted-by":"publisher","first-page":"1953","DOI":"10.1090\/S0025-5718-2014-02899-8","volume":"84","author":"R Cosset","year":"2015","unstructured":"Cosset, R., Robert, D.: Computing $$(l, l)$$-isogenies in polynomial time on Jacobians of genus $$2$$ curves. Math. Comput. 84(294), 1953\u20131975 (2015)","journal-title":"Math. Comput."},{"key":"16_CR12","doi-asserted-by":"publisher","unstructured":"Crandall, R., Pomerance, C.B.: Prime numbers: a computational perspective. 2nd Edn. Springer New York (2005). https:\/\/doi.org\/10.1007\/0-387-28979-8","DOI":"10.1007\/0-387-28979-8"},{"key":"16_CR13","doi-asserted-by":"publisher","unstructured":"Dartois, P., Leroux, A., Robert, D., Wesolowski, B.: SQIsignHD: new dimensions in cryptography. In: Joye, M., Leander, G. (eds.) EUROCRYPT\u00a02024, Part\u00a0I. LNCS, vol. 14651, pp. 3\u201332. Springer, Cham (2024). https:\/\/doi.org\/10.1007\/978-3-031-58716-0_1","DOI":"10.1007\/978-3-031-58716-0_1"},{"key":"16_CR14","doi-asserted-by":"publisher","unstructured":"Dartois, P., Maino, L., Pope, G., Robert, D.: An algorithmic approach to (2, 2)-isogenies in the theta model and applications to isogeny-based cryptography. In: Chung, K.M., Sasaki, Y. (eds.) ASIACRYPT\u00a02024, Part\u00a0III. LNCS, vol. 15486, pp. 304\u2013338. Springer, Singapore (2024). https:\/\/doi.org\/10.1007\/978-981-96-0891-1_10","DOI":"10.1007\/978-981-96-0891-1_10"},{"key":"16_CR15","doi-asserted-by":"publisher","unstructured":"De Feo, L., Kohel, D., Leroux, A., Petit, C., Wesolowski, B.: SQISign: compact post-quantum signatures from quaternions and isogenies. In: Moriai, S., Wang, H. (eds.) ASIACRYPT\u00a02020, Part\u00a0I. LNCS, vol. 12491, pp. 64\u201393. Springer, Cham (2020). https:\/\/doi.org\/10.1007\/978-3-030-64837-4_3","DOI":"10.1007\/978-3-030-64837-4_3"},{"key":"16_CR16","doi-asserted-by":"publisher","unstructured":"De Feo, L., Leroux, A., Longa, P., Wesolowski, B.: New algorithms for the Deuring correspondence - towards practical and secure SQISign signatures. In: Hazay, C., Stam, M. (eds.) EUROCRYPT\u00a02023, Part\u00a0V. LNCS, vol. 14008, pp. 659\u2013690. Springer, Cham (2023). https:\/\/doi.org\/10.1007\/978-3-031-30589-4_23","DOI":"10.1007\/978-3-031-30589-4_23"},{"issue":"2","key":"16_CR17","doi-asserted-by":"publisher","first-page":"425","DOI":"10.1007\/s10623-014-0010-1","volume":"78","author":"C Delfs","year":"2014","unstructured":"Delfs, C., Galbraith, S.D.: Computing isogenies between supersingular elliptic curves over $$\\mathbb{{F}}_p$$. Des. Codes Crypt. 78(2), 425\u2013440 (2014). https:\/\/doi.org\/10.1007\/s10623-014-0010-1","journal-title":"Des. Codes Crypt."},{"key":"16_CR18","doi-asserted-by":"publisher","unstructured":"Duparc, M., Fouotsa, T.B.: SQIPrime: a dimension 2 variant of SQISignHD with non-smooth challenge isogenies. In: Chung, K.M., Sasaki, Y. (eds.) ASIACRYPT\u00a02024, Part\u00a0III. LNCS, vol. 15486, pp. 396\u2013429. Springer, Singapore (2024). https:\/\/doi.org\/10.1007\/978-981-96-0891-1_13","DOI":"10.1007\/978-981-96-0891-1_13"},{"key":"16_CR19","doi-asserted-by":"publisher","unstructured":"Eisentr\u00e4ger, K., Hallgren, S., Lauter, K.E., Morrison, T., Petit, C.: Supersingular isogeny graphs and endomorphism rings: reductions and solutions. In: Nielsen, J.B., Rijmen, V. (eds.) EUROCRYPT\u00a02018, Part\u00a0III. LNCS, vol. 10822, pp. 329\u2013368. Springer, Cham (2018). https:\/\/doi.org\/10.1007\/978-3-319-78372-7_11","DOI":"10.1007\/978-3-319-78372-7_11"},{"key":"16_CR20","doi-asserted-by":"publisher","unstructured":"Galbraith, S.D., Petit, C., Silva, J.: Identification protocols and signature schemes based on supersingular isogeny problems. In: Takagi, T., Peyrin, T. (eds.) ASIACRYPT\u00a02017, Part\u00a0I. LNCS, vol. 10624, pp. 3\u201333. Springer, Cham (2017). https:\/\/doi.org\/10.1007\/978-3-319-70694-8_1","DOI":"10.1007\/978-3-319-70694-8_1"},{"key":"16_CR21","doi-asserted-by":"publisher","unstructured":"Grover, L.K.: A fast quantum mechanical algorithm for database search. In: 28th ACM STOC, pp. 212\u2013219. ACM Press (1996). https:\/\/doi.org\/10.1145\/237814.237866","DOI":"10.1145\/237814.237866"},{"key":"16_CR22","doi-asserted-by":"publisher","unstructured":"Grover, L.K.: A fast quantum mechanical algorithm for database search. In: Proceedings of the Twenty-Eighth Annual ACM Symposium on Theory of Computing, pp. 212\u2013219. STOC \u201996, Association for Computing Machinery, New York, NY, USA (1996). https:\/\/doi.org\/10.1145\/237814.237866","DOI":"10.1145\/237814.237866"},{"key":"16_CR23","doi-asserted-by":"publisher","unstructured":"Hardy, G.H., Wright, E..M.: An introduction to the theory of numbers. Oxford University Press (2008). https:\/\/doi.org\/10.1093\/oso\/9780199219858.001.0001","DOI":"10.1093\/oso\/9780199219858.001.0001"},{"key":"16_CR24","doi-asserted-by":"publisher","first-page":"93","DOI":"10.1515\/crll.1997.485.93","volume":"485","author":"E Kani","year":"1997","unstructured":"Kani, E.: The number of curves of genus two with elliptic differentials. Journal f\u00fcr die reine und angewandte Mathematik 485, 93\u2013122 (1997). https:\/\/doi.org\/10.1515\/crll.1997.485.93","journal-title":"Journal f\u00fcr die reine und angewandte Mathematik"},{"key":"16_CR25","doi-asserted-by":"publisher","unstructured":"Kohel, D., Lauter, K., Petit, C., Tignol, J.P.: On the quaternion $$\\ell $$-isogeny path problem. LMS J. Comput. Math. 17(A), 418\u2013432 (2014). https:\/\/doi.org\/10.1112\/S1461157014000151, https:\/\/hal.archives-ouvertes.fr\/hal-01257092","DOI":"10.1112\/S1461157014000151"},{"key":"16_CR26","doi-asserted-by":"publisher","unstructured":"Lang, S.: Algebra, Graduate Texts in Mathematics, vol.\u00a0211. Springer, New York, NY, revised 3rd edn. (2002). https:\/\/doi.org\/10.1007\/978-1-4613-0041-0","DOI":"10.1007\/978-1-4613-0041-0"},{"key":"16_CR27","doi-asserted-by":"publisher","unstructured":"Leroux, A.: Verifiable random function from the deuring correspondence and higher dimensional isogenies. In: Fehr, S., Fouque, P.A. (eds.) EUROCRYPT\u00a02025, Part\u00a0VII. LNCS, vol. 15607, pp. 167\u2013194. Springer, Cham (2025). https:\/\/doi.org\/10.1007\/978-3-031-91098-2_7","DOI":"10.1007\/978-3-031-91098-2_7"},{"issue":"1","key":"16_CR28","doi-asserted-by":"publisher","first-page":"7","DOI":"10.1007\/s40993-022-00407-9","volume":"9","author":"D Lubicz","year":"2023","unstructured":"Lubicz, D., Robert, D.: Fast change of level and applications to isogenies. Res. Number Theory 9(1), 7 (2023). https:\/\/doi.org\/10.1007\/s40993-022-00407-9","journal-title":"Res. Number Theory"},{"key":"16_CR29","doi-asserted-by":"publisher","unstructured":"Maino, L., Martindale, C., Panny, L., Pope, G., Wesolowski, B.: A direct key recovery attack on SIDH. In: Hazay, C., Stam, M. (eds.) EUROCRYPT\u00a02023, Part\u00a0V. LNCS, vol. 14008, pp. 448\u2013471. Springer, Cham (2023). https:\/\/doi.org\/10.1007\/978-3-031-30589-4_16","DOI":"10.1007\/978-3-031-30589-4_16"},{"key":"16_CR30","unstructured":"Merdy, A.H.L., Wesolowski, B.: Unconditional foundations for supersingular isogeny-based cryptography (2025). https:\/\/arxiv.org\/abs\/2502.17010"},{"key":"16_CR31","doi-asserted-by":"publisher","unstructured":"Nakagawa, K., Onuki, H.: QFESTA: Efficient algorithms and parameters for FESTA using quaternion algebras. In: Reyzin, L., Stebila, D. (eds.) CRYPTO\u00a02024, Part\u00a0V. LNCS, vol. 14924, pp. 75\u2013106. Springer, Cham (2024). https:\/\/doi.org\/10.1007\/978-3-031-68388-6_4","DOI":"10.1007\/978-3-031-68388-6_4"},{"key":"16_CR32","doi-asserted-by":"crossref","unstructured":"Nakagawa, K., Onuki, H.: SQIsign2DPush: faster signature scheme using 2-dimensional isogenies. Cryptology ePrint Archive, Paper 2025\/897 (2025). https:\/\/eprint.iacr.org\/2025\/897","DOI":"10.1007\/978-3-032-25327-9_18"},{"key":"16_CR33","doi-asserted-by":"publisher","unstructured":"Nakagawa, K., et al.: SQIsign2D-East: a new signature scheme using 2-dimensional isogenies. In: Chung, K.M., Sasaki, Y. (eds.) ASIACRYPT\u00a02024, Part\u00a0III. LNCS, vol. 15486, pp. 272\u2013303. Springer, Singapore (2024). https:\/\/doi.org\/10.1007\/978-981-96-0891-1_9","DOI":"10.1007\/978-981-96-0891-1_9"},{"key":"16_CR34","doi-asserted-by":"publisher","unstructured":"Robert, D.: Breaking SIDH in polynomial time. In: Hazay, C., Stam, M. (eds.) EUROCRYPT\u00a02023, Part\u00a0V. LNCS, vol. 14008, pp. 472\u2013503. Springer, Cham (2023). https:\/\/doi.org\/10.1007\/978-3-031-30589-4_17","DOI":"10.1007\/978-3-031-30589-4_17"},{"key":"16_CR35","first-page":"238","volume":"273","author":"J V\u00e9lu","year":"1971","unstructured":"V\u00e9lu, J.: Isog\u00e9nies entre courbes elliptiques. Comptes-Rendues de l\u2019Acad\u00e9mie des Sciences 273, 238\u2013241 (1971)","journal-title":"Comptes-Rendues de l\u2019Acad\u00e9mie des Sciences"},{"key":"16_CR36","doi-asserted-by":"publisher","unstructured":"Wesolowski, B.: The supersingular isogeny path and endomorphism ring problems are equivalent. In: 62nd FOCS, pp. 1100\u20131111. IEEE Computer Society Press (2022). https:\/\/doi.org\/10.1109\/FOCS52979.2021.00109","DOI":"10.1109\/FOCS52979.2021.00109"},{"key":"16_CR37","doi-asserted-by":"crossref","unstructured":"Xu, Z., Lin, K., Zhao, C.A., Ouyang, Y.: SQIsign2D$$^2$$: new SQIsign2D variant by leveraging power smooth isogenies in dimension one. Cryptology ePrint Archive, Paper 2025\/920 (2025). https:\/\/eprint.iacr.org\/2025\/920","DOI":"10.1007\/978-981-95-5113-2_11"}],"container-title":["Lecture Notes in Computer Science","Public-Key Cryptography \u2013 PKC 2026"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-032-26731-3_16","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,5,22]],"date-time":"2026-05-22T02:40:59Z","timestamp":1779417659000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-032-26731-3_16"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026]]},"ISBN":["9783032267306","9783032267313"],"references-count":37,"URL":"https:\/\/doi.org\/10.1007\/978-3-032-26731-3_16","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2026]]},"assertion":[{"value":"22 May 2026","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"PKC","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"IACR International Conference on Public-Key Cryptography","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"West Palm Beach, FL","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"USA","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2026","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"25 May 2026","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"28 May 2026","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"29","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"pkc2026","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/pkc.iacr.org\/2026\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}