{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,22]],"date-time":"2026-05-22T03:06:40Z","timestamp":1779419200544,"version":"3.53.1"},"publisher-location":"Cham","reference-count":43,"publisher":"Springer Nature Switzerland","isbn-type":[{"value":"9783032267306","type":"print"},{"value":"9783032267313","type":"electronic"}],"license":[{"start":{"date-parts":[[2026,1,1]],"date-time":"2026-01-01T00:00:00Z","timestamp":1767225600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2026,1,1]],"date-time":"2026-01-01T00:00:00Z","timestamp":1767225600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2026]]},"DOI":"10.1007\/978-3-032-26731-3_3","type":"book-chapter","created":{"date-parts":[[2026,5,22]],"date-time":"2026-05-22T02:42:05Z","timestamp":1779417725000},"page":"70-102","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["BW-KEM: Robust and\u00a0Versatile MLWE-Based KEM with\u00a0Barnes-Wall Lattices"],"prefix":"10.1007","author":[{"ORCID":"https:\/\/orcid.org\/0009-0001-9728-8666","authenticated-orcid":false,"given":"Songlin","family":"Li","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0006-1905-2902","authenticated-orcid":false,"given":"Hengchuan","family":"Zou","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-7287-4223","authenticated-orcid":false,"given":"Shiyu","family":"Shen","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0006-5294-630X","authenticated-orcid":false,"given":"Yifan","family":"Dong","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-2623-9170","authenticated-orcid":false,"given":"Yunlei","family":"Zhao","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2026,5,22]]},"reference":[{"key":"3_CR1","doi-asserted-by":"crossref","unstructured":"Alagic, G., et al.: Status report on the fourth round of the nist post-quantum cryptography standardization process. (National Institute of Standardsand Technology, Gaithersburg, MD), NIST Internal Report (IR) NIST IR 8545 (2025). http:\/\/doi.org\/10.6028\/NIST.IR.8545","DOI":"10.6028\/NIST.IR.8545"},{"key":"3_CR2","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"103","DOI":"10.1007\/978-3-319-56614-6_4","volume-title":"Advances in Cryptology \u2013 EUROCRYPT 2017","author":"MR Albrecht","year":"2017","unstructured":"Albrecht, M.R.: On dual lattice attacks against small-secret LWE and parameter choices in HElib and SEAL. In: Coron, J.-S., Nielsen, J.B. (eds.) EUROCRYPT 2017. LNCS, vol. 10211, pp. 103\u2013129. Springer, Cham (2017). https:\/\/doi.org\/10.1007\/978-3-319-56614-6_4"},{"key":"3_CR3","unstructured":"Alkim, E., Ducas, L., P\u00f6ppelmann, T., Schwabe, P.: NewHope without reconciliation. Cryptology ePrint Archive, Report 2016\/1157 (2016). https:\/\/eprint.iacr.org\/2016\/1157"},{"key":"3_CR4","unstructured":"Alkim, E., Ducas, L., P\u00f6ppelmann, T., Schwabe, P.: Post-quantum key exchange - A new hope. In: Holz, T., Savage, S. (eds.) USENIX Security 2016: 25th USENIX Security Symposium, pp. 327\u2013343. USENIX Association, Austin, TX, USA (2016). https:\/\/www.usenix.org\/conference\/usenixsecurity16\/technical-sessions\/presentation\/alkim"},{"key":"3_CR5","doi-asserted-by":"publisher","unstructured":"Bellare, M., Rogaway, P.: Random oracles are practical: a paradigm for designing efficient protocols. In: Denning, D.E., Pyle, R., Ganesan, R., Sandhu, R.S., Ashby, V. (eds.) ACM CCS 93: 1st Conference on Computer and Communications Security, pp. 62\u201373. ACM Press, Fairfax, Virginia, USA (1993).https:\/\/doi.org\/10.1145\/168588.168596","DOI":"10.1145\/168588.168596"},{"key":"3_CR6","unstructured":"Bernstein, D.J., et al.: NTRU Prime. Technical report, National Institute of Standards and Technology (2020). https:\/\/csrc.nist.gov\/projects\/post-quantum-cryptography\/post-quantum-cryptography-standardization\/round-3-submissions"},{"key":"3_CR7","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"41","DOI":"10.1007\/978-3-642-25385-0_3","volume-title":"Advances in Cryptology \u2013 ASIACRYPT 2011","author":"D Boneh","year":"2011","unstructured":"Boneh, D., Dagdelen, \u00d6., Fischlin, M., Lehmann, A., Schaffner, C., Zhandry, M.: Random oracles in a quantum world. In: Lee, D.H., Wang, X. (eds.) ASIACRYPT 2011. LNCS, vol. 7073, pp. 41\u201369. Springer, Heidelberg (2011). https:\/\/doi.org\/10.1007\/978-3-642-25385-0_3"},{"key":"3_CR8","doi-asserted-by":"publisher","unstructured":"Bos, J.W., et al.: CRYSTALS - Kyber: a CCA-secure module-lattice-based KEM. In: 2018 IEEE European Symposium on Security and Privacy, pp. 353\u2013367. IEEE Computer Society Press, London, United Kingdom (2018). https:\/\/doi.org\/10.1109\/EuroSP.2018.00032","DOI":"10.1109\/EuroSP.2018.00032"},{"key":"3_CR9","doi-asserted-by":"crossref","unstructured":"Chen, L., et al.: Report on post-quantum cryptography. (National Institute of Standardsand Technology, Gaithersburg, MD), NIST Internal Report (IR) NIST IR 8105 (2016). http:\/\/doi.org\/10.6028\/NIST.IR.8105","DOI":"10.6028\/NIST.IR.8105"},{"key":"3_CR10","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1007\/978-3-642-25385-0_1","volume-title":"Advances in Cryptology \u2013 ASIACRYPT 2011","author":"Y Chen","year":"2011","unstructured":"Chen, Y., Nguyen, P.Q.: BKZ 2.0: better lattice security estimates. In: Lee, D.H., Wang, X. (eds.) ASIACRYPT 2011. LNCS, vol. 7073, pp. 1\u201320. Springer, Heidelberg (2011). https:\/\/doi.org\/10.1007\/978-3-642-25385-0_1"},{"key":"3_CR11","doi-asserted-by":"publisher","DOI":"10.1007\/978-1-4757-6568-7","volume-title":"Sphere Packings, Lattices and Groups","author":"JH Conway","year":"1999","unstructured":"Conway, J.H., Sloane, N.J.A.: Sphere Packings, Lattices and Groups, 3rd edn. Springer, New York (1999)","edition":"3"},{"key":"3_CR12","doi-asserted-by":"publisher","unstructured":"Corlay, V., Boutros, J.J., Ciblat, P., Brunel, L.: On the decoding of barnes-wall lattices. In: 2020 IEEE International Symposium on Information Theory (ISIT), pp. 519\u2013524 (2020). https:\/\/doi.org\/10.1109\/ISIT44484.2020.9173976","DOI":"10.1109\/ISIT44484.2020.9173976"},{"key":"3_CR13","doi-asserted-by":"crossref","unstructured":"D\u2019Anvers, J.P., Tiepelt, M., Vercauteren, F., Verbauwhede, I.: Timing attacks on error correcting codes in post-quantum schemes. Cryptology ePrint Archive, Report 2019\/292 (2019). https:\/\/eprint.iacr.org\/2019\/292","DOI":"10.1145\/3338467.3358948"},{"key":"3_CR14","unstructured":"D\u2019Anvers, J.P., Vercauteren, F., Verbauwhede, I.: On the impact of decryption failures on the security of LWE\/LWR based schemes. Cryptology ePrint Archive, Report 2018\/1089 (2018). https:\/\/eprint.iacr.org\/2018\/1089"},{"key":"3_CR15","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"103","DOI":"10.1007\/978-3-030-25510-7_6","volume-title":"Post-Quantum Cryptography","author":"J-P D\u2019Anvers","year":"2019","unstructured":"D\u2019Anvers, J.-P., Vercauteren, F., Verbauwhede, I.: The impact of error dependencies on ring\/mod-LWE\/LWR based schemes. In: Ding, J., Steinwandt, R. (eds.) PQCrypto 2019. LNCS, vol. 11505, pp. 103\u2013115. Springer, Cham (2019). https:\/\/doi.org\/10.1007\/978-3-030-25510-7_6"},{"key":"3_CR16","doi-asserted-by":"publisher","unstructured":"Duman, J., H\u00f6velmanns, K., Kiltz, E., Lyubashevsky, V., Seiler, G.: Faster lattice-based KEMs via a generic Fujisaki-Okamoto transform using prefix hashing. In: Vigna, G., Shi, E. (eds.) ACM CCS 2021: 28th Conference on Computer and Communications Security, pp. 2722\u20132737. ACM Press, Virtual Event, Republic of Korea (2021). https:\/\/doi.org\/10.1145\/3460120.3484819","DOI":"10.1145\/3460120.3484819"},{"issue":"10","key":"3_CR17","doi-asserted-by":"publisher","first-page":"2293","DOI":"10.1109\/TIT.2004.834787","volume":"50","author":"U Erez","year":"2004","unstructured":"Erez, U., Zamir, R.: Achieving 1\/2 log (1+snr) on the AWGN channel with lattice encoding and decoding. IEEE Trans. Inf. Theory 50(10), 2293\u20132314 (2004). https:\/\/doi.org\/10.1109\/TIT.2004.834787","journal-title":"IEEE Trans. Inf. Theory"},{"key":"3_CR18","doi-asserted-by":"publisher","unstructured":"Forney, G.D.: Coset codes. i. introduction and geometrical classification. IEEE Trans. Inf. Theory, 34(5), 1123\u20131151 (1988). https:\/\/doi.org\/10.1109\/18.21245","DOI":"10.1109\/18.21245"},{"key":"3_CR19","doi-asserted-by":"publisher","unstructured":"Forney, G.D.: Coset codes. ii. binary lattices and related codes. IEEE Trans. Inf. Theory 34(5), 1152\u20131187 (1988). https:\/\/doi.org\/10.1109\/18.21246","DOI":"10.1109\/18.21246"},{"key":"3_CR20","doi-asserted-by":"publisher","unstructured":"Fritzmann, T., P\u00f6ppelmann, T., Sep\u00falveda, J.: Analysis of error-correcting codes for lattice-based key exchange. In: Cid, C., Jacobson, Jr., M.J. (eds.) SAC 2018: 25th Annual International Workshop on Selected Areas in Cryptography. LNCS, vol. 11349, pp. 369\u2013390. Springer, Cham (2019). https:\/\/doi.org\/10.1007\/978-3-030-10970-7_17","DOI":"10.1007\/978-3-030-10970-7_17"},{"key":"3_CR21","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"537","DOI":"10.1007\/3-540-48405-1_34","volume-title":"Advances in Cryptology \u2014 CRYPTO\u2019 99","author":"E Fujisaki","year":"1999","unstructured":"Fujisaki, E., Okamoto, T.: Secure integration of asymmetric and symmetric encryption schemes. In: Wiener, M. (ed.) CRYPTO 1999. LNCS, vol. 1666, pp. 537\u2013554. Springer, Heidelberg (1999). https:\/\/doi.org\/10.1007\/3-540-48405-1_34"},{"key":"3_CR22","unstructured":"Hamburg, M.: Three Bears. Technical report, National Institute of Standards and Technology (2019). https:\/\/csrc.nist.gov\/projects\/post-quantum-cryptography\/post-quantum-cryptography-standardization\/round-2-submissions"},{"key":"3_CR23","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"341","DOI":"10.1007\/978-3-319-70500-2_12","volume-title":"Theory of Cryptography","author":"D Hofheinz","year":"2017","unstructured":"Hofheinz, D., H\u00f6velmanns, K., Kiltz, E.: A modular analysis of the Fujisaki-Okamoto transformation. In: Kalai, Y., Reyzin, L. (eds.) TCC 2017. LNCS, vol. 10677, pp. 341\u2013371. Springer, Cham (2017). https:\/\/doi.org\/10.1007\/978-3-319-70500-2_12"},{"issue":"2","key":"3_CR24","doi-asserted-by":"publisher","first-page":"915","DOI":"10.1109\/TCOMM.2018.2876113","volume":"67","author":"L Liu","year":"2019","unstructured":"Liu, L., Yan, Y., Ling, C., Wu, X.: Construction of capacity-achieving lattice codes: polar lattices. IEEE Trans. Commun. 67(2), 915\u2013928 (2019). https:\/\/doi.org\/10.1109\/TCOMM.2018.2876113","journal-title":"IEEE Trans. Commun."},{"key":"3_CR25","doi-asserted-by":"publisher","unstructured":"Liu, S., Sakzad, A.: Compact lattice-coded (multi-recipient) kyber without CLT independence assumption. In: Hanaoka, G., Yang, B.Y. (eds.) Advances in Cryptology \u2013 ASIACRYPT\u00a02025, Part\u00a0III. Lecture Notes in Computer Science, vol. 16247, pp. 363\u2013395. Springer, Singapore (2025). https:\/\/doi.org\/10.1007\/978-981-95-5099-9_12","DOI":"10.1007\/978-981-95-5099-9_12"},{"issue":"8","key":"3_CR26","doi-asserted-by":"publisher","first-page":"3181","DOI":"10.1007\/s10623-025-01640-w","volume":"93","author":"S Liu","year":"2025","unstructured":"Liu, S., Sakzad, A.: Lattice codes for CRYSTALS-kyber. Des. Codes Crypt. 93(8), 3181\u20133205 (2025). https:\/\/doi.org\/10.1007\/s10623-025-01640-w","journal-title":"Des. Codes Crypt."},{"key":"3_CR27","unstructured":"Lu, X., et al.: LAC. Technical report, National Institute of Standards and Technology (2019). https:\/\/csrc.nist.gov\/projects\/post-quantum-cryptography\/post-quantum-cryptography-standardization\/round-2-submissions"},{"issue":"4","key":"3_CR28","doi-asserted-by":"publisher","first-page":"917","DOI":"10.1007\/s10623-023-01321-6","volume":"92","author":"S Lyu","year":"2024","unstructured":"Lyu, S., Liu, L., Ling, C., Lai, J., Chen, H.: Lattice codes for lattice-based PKE. Des. Codes Crypt. 92(4), 917\u2013939 (2024). https:\/\/doi.org\/10.1007\/s10623-023-01321-6","journal-title":"Des. Codes Crypt."},{"key":"3_CR29","doi-asserted-by":"publisher","unstructured":"Lyubashevsky, V., Seiler, G.: NTTRU: truly fast NTRU using NTT. IACR Trans. Cryptograph. Hardw. Embed. Syst. 2019(3), 180\u2013201 (2019). https:\/\/doi.org\/10.13154\/tches.v2019.i3.180-201, https:\/\/tches.iacr.org\/index.php\/TCHES\/article\/view\/8293","DOI":"10.13154\/tches.v2019.i3.180-201"},{"key":"3_CR30","unstructured":"Mattsson, J.P.: Ml-kem is great! what\u2019s missing? NIST Workshop on Guidance for KEMs (2025). https:\/\/csrc.nist.gov\/Presentations\/2025\/ml-kem-is-great"},{"key":"3_CR31","doi-asserted-by":"publisher","unstructured":"Micciancio, D., Nicolosi, A.: Efficient bounded distance decoders for barnes-wall lattices. In: 2008 IEEE International Symposium on Information Theory, pp. 2484\u20132488 (2008). https:\/\/doi.org\/10.1109\/ISIT.2008.4595438","DOI":"10.1109\/ISIT.2008.4595438"},{"key":"3_CR32","doi-asserted-by":"publisher","unstructured":"Paiva, T.B., Simpl\u00edcio Jr., M.A., Hafiz, S.M., Yildiz, B., Cominetti, E.L., Ogawa, H.S.: Tailorable codes for lattice-based KEMs with applications to compact ML-KEM instantiations. IACR Trans. Cryptograp. Hardw. Embed. Syst. 2025(3), 139\u2013163 (2025). https:\/\/doi.org\/10.46586\/tches.v2025.i3.139-163","DOI":"10.46586\/tches.v2025.i3.139-163"},{"key":"3_CR33","doi-asserted-by":"publisher","unstructured":"Papadopoulos, I., Wang, J.: Polar codes for module-lwe public key encryption: the case of kyber. Cryptography 7(1) (2023). https:\/\/doi.org\/10.3390\/cryptography7010002, https:\/\/www.mdpi.com\/2410-387X\/7\/1\/2","DOI":"10.3390\/cryptography7010002"},{"key":"3_CR34","unstructured":"van Poppelen, A.: Cryptographic decoding of the leech lattice. Cryptology ePrint Archive, Report 2016\/1050 (2016). https:\/\/eprint.iacr.org\/2016\/1050"},{"key":"3_CR35","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"192","DOI":"10.1007\/978-3-319-72565-9_10","volume-title":"Selected Areas in Cryptography \u2013 SAC 2017","author":"M-JO Saarinen","year":"2018","unstructured":"Saarinen, M.-J.O.: HILA5: on reliability, reconciliation, and error correction for ring-LWE encryption. In: Adams, C., Camenisch, J. (eds.) SAC 2017. LNCS, vol. 10719, pp. 192\u2013212. Springer, Cham (2018). https:\/\/doi.org\/10.1007\/978-3-319-72565-9_10"},{"key":"3_CR36","unstructured":"Saliba, C., Luzzi, L., Ling, C.: Error correction for frodokem using the gosset lattice. arXiv preprint arXiv:2110.01740 (2021)"},{"issue":"2","key":"3_CR37","doi-asserted-by":"publisher","first-page":"181","DOI":"10.1007\/BF01581144","volume":"66","author":"CP Schnorr","year":"1994","unstructured":"Schnorr, C.P., Euchner, M.: Lattice basis reduction: improved practical algorithms and solving subset sum problems. Math. Program. 66(2), 181\u2013199 (1994). https:\/\/doi.org\/10.1007\/BF01581144","journal-title":"Math. Program."},{"key":"3_CR38","unstructured":"Schwabe, P., et al.: CRYSTALS-KYBER. Technical report, National Institute of Standards and Technology (2020). https:\/\/csrc.nist.gov\/projects\/post-quantum-cryptography\/post-quantum-cryptography-standardization\/round-3-submissions"},{"key":"3_CR39","unstructured":"Simon, M.K.: Probability Distributions Involving Gaussian Random Variables: A Handbook for Engineers. Scientists and Mathematicians. Springer, Heidelberg (2006)"},{"key":"3_CR40","doi-asserted-by":"crossref","unstructured":"of\u00a0Standards, N.I., Technology: Module-lattice-based key-encapsulation mechanism standard. (Department of Commerce, Washington, D.C.), Federal Information Processing Standards Publication (FIPS) NIST FIPS 203 (2024). https:\/\/doi.org\/10.6028\/NIST.FIPS.203","DOI":"10.6028\/NIST.FIPS.203"},{"key":"3_CR41","unstructured":"Wang, A., Zheng, Z., Zhao, C., Qiu, Z., Zeng, G., Wang, X.: Scloud+: a lightweight LWE-based KEM without ring\/module structure. Cryptology ePrint Archive, Report 2024\/1306 (2024). https:\/\/eprint.iacr.org\/2024\/1306"},{"key":"3_CR42","doi-asserted-by":"publisher","unstructured":"Wang, J., Ling, C.: How to construct polar codes for ring-LWE-based public key encryption. Entropy 23(8) (2021). https:\/\/doi.org\/10.3390\/e23080938, https:\/\/www.mdpi.com\/1099-4300\/23\/8\/938","DOI":"10.3390\/e23080938"},{"key":"3_CR43","unstructured":"Zhao, Y., Jin, Z., Gong, B., Sui, G.: KCL (pka OKCN\/AKCN\/CNKE). Technical report, National Institute of Standards and Technology (2017). https:\/\/csrc.nist.gov\/projects\/post-quantum-cryptography\/post-quantum-cryptography-standardization\/round-1-submissions"}],"container-title":["Lecture Notes in Computer Science","Public-Key Cryptography \u2013 PKC 2026"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-032-26731-3_3","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,5,22]],"date-time":"2026-05-22T02:42:12Z","timestamp":1779417732000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-032-26731-3_3"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026]]},"ISBN":["9783032267306","9783032267313"],"references-count":43,"URL":"https:\/\/doi.org\/10.1007\/978-3-032-26731-3_3","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2026]]},"assertion":[{"value":"22 May 2026","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"PKC","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"IACR International Conference on Public-Key Cryptography","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"West Palm Beach, FL","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"USA","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2026","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"25 May 2026","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"28 May 2026","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"29","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"pkc2026","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/pkc.iacr.org\/2026\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}