{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,31]],"date-time":"2026-03-31T23:45:18Z","timestamp":1775000718574,"version":"3.50.1"},"reference-count":34,"publisher":"Springer Science and Business Media LLC","issue":"3","license":[{"start":{"date-parts":[[2025,6,9]],"date-time":"2025-06-09T00:00:00Z","timestamp":1749427200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2025,6,9]],"date-time":"2025-06-09T00:00:00Z","timestamp":1749427200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["J Cryptol"],"published-print":{"date-parts":[[2025,7]]},"DOI":"10.1007\/s00145-025-09544-7","type":"journal-article","created":{"date-parts":[[2025,6,9]],"date-time":"2025-06-09T12:24:20Z","timestamp":1749471860000},"update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":3,"title":["A New Multivariate Primitive from CCZ Equivalence"],"prefix":"10.1007","volume":"38","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-6817-3421","authenticated-orcid":false,"given":"Marco","family":"Calderini","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-5227-807X","authenticated-orcid":false,"given":"Alessio","family":"Caminata","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-6381-4712","authenticated-orcid":false,"given":"Irene","family":"Villa","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2025,6,9]]},"reference":[{"key":"9544_CR1","unstructured":"Ward, Beullens, Ming-Shing, Chen, Jintai, Ding, Boru, Gong, Matthias\u00a0J. Kannwischer, Jacques, Patarin, Bo-Yuan, Peng, Dieter, Schmidt, Cheng-Jhih, Shih, Chengdong, Tao, Bo-Yin, Yang, UOV: Unbalanced Oil and Vinegar. Algorithm Specifications and Supporting Documentation. Version 1.0. URL: https:\/\/www.uovsig.org\/"},{"issue":"3\u20134","key":"9544_CR2","doi-asserted-by":"crossref","first-page":"235","DOI":"10.1006\/jsco.1996.0125","volume":"24","author":"Bosma Wieb","year":"1997","unstructured":"Wieb, Bosma, John, Cannon, Catherine, Playoust. The Magma algebra system I: The user language. Journal of Symbolic Computation, 24(3-4), 235\u2013265 (1997)","journal-title":"Journal of Symbolic Computation"},{"key":"9544_CR3","doi-asserted-by":"publisher","unstructured":"Lilya, Budaghyan, Claude, Carlet, Alexander, Pott. New classes of almost bent and almost perfect nonlinear polynomials. IEEE Transactions on Information Theory, 52(3), 1141 \u2013 1152 (2006). https:\/\/doi.org\/10.1109\/TIT.2005.864481. All Open Access, Green Open Access","DOI":"10.1109\/TIT.2005.864481"},{"key":"9544_CR4","doi-asserted-by":"publisher","first-page":"85","DOI":"10.1007\/s12095-019-00367-5","volume":"12","author":"Budaghyan Lilya","year":"2020","unstructured":"Lilya, Budaghyan, Marco, Calderini, Irene, Villa. On relations between CCZ-and EA-equivalences. Cryptography and Communications, 12, 85\u2013100 (2020)","journal-title":"Cryptography and Communications"},{"key":"9544_CR5","doi-asserted-by":"publisher","first-page":"255","DOI":"10.1016\/j.jsc.2012.07.005","volume":"50","author":"Ballico Edoardo","year":"2013","unstructured":"Edoardo, Ballico, Michele, Elia, Massimiliano, Sala. On the evaluation of multivariate polynomials over finite fields. Journal of Symbolic Computation, 50, 255\u2013262 (2013)","journal-title":"Journal of Symbolic Computation"},{"key":"9544_CR6","doi-asserted-by":"publisher","unstructured":"Luk, Bettale, Jean-Charles, Faug\u00e8re, Ludovic, Perret. Cryptanalysis of HFE, multi-HFE and variants for odd and even characteristic. Designs, Codes, and Cryptography, 69(1), 1\u201352 (2013). https:\/\/doi.org\/10.1007\/s10623-012-9617-2. All Open Access, Green Open Access","DOI":"10.1007\/s10623-012-9617-2"},{"key":"9544_CR7","doi-asserted-by":"publisher","unstructured":"Daniel\u00a0J. Bernstein, Tanja, Lange. Post-quantum cryptography. Nature, 549(7671), 188 \u2013 194 (2017). https:\/\/doi.org\/10.1038\/nature23461. All Open Access, Green Open Access","DOI":"10.1038\/nature23461"},{"key":"9544_CR8","doi-asserted-by":"crossref","DOI":"10.1017\/9781108583664","volume-title":"Introduction to applied linear algebra: vectors, matrices, and least squares","author":"Boyd Stephen","year":"2018","unstructured":"Stephen, Boyd, Lieven, Vandenberghe. Introduction to applied linear algebra: vectors, matrices, and least squares. Cambridge university press, (2018)"},{"key":"9544_CR9","doi-asserted-by":"publisher","unstructured":"Claude, Carlet. Boolean functions for cryptography and coding theory. Cambridge University Press, New York (2020). https:\/\/doi.org\/10.1017\/9781108606806","DOI":"10.1017\/9781108606806"},{"key":"9544_CR10","doi-asserted-by":"publisher","first-page":"125","DOI":"10.1023\/A:1008344232130","volume":"15","author":"Carlet Claude","year":"1998","unstructured":"Claude, Carlet, Pascale, Charpin, Victor, Zinoviev. Codes, bent functions and permutations suitable for DES-like cryptosystems. Designs, Codes and Cryptography, 15, 125\u2013156 (1998)","journal-title":"Designs, Codes and Cryptography"},{"key":"9544_CR11","doi-asserted-by":"publisher","first-page":"163","DOI":"10.1007\/978-3-030-77700-5_5","volume":"24","author":"Caminata Alessio","year":"2021","unstructured":"Alessio, Caminata, Elisa, Gorla. The complexity of MinRank. Association for Women in Mathematics Series, 24, 163 \u2013 169 (2021). https:\/\/doi.org\/10.1007\/978-3-030-77700-5_5.","journal-title":"Association for Women in Mathematics Series"},{"key":"9544_CR12","doi-asserted-by":"publisher","unstructured":"Alessio, Caminata, Elisa, Gorla. Solving multivariate polynomial systems and an invariant from commutative algebra. Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics), 12542 LNCS:3 \u2013 36 (2021). https:\/\/doi.org\/10.1007\/978-3-030-68869-1_1.","DOI":"10.1007\/978-3-030-68869-1_1"},{"key":"9544_CR13","doi-asserted-by":"publisher","first-page":"322","DOI":"10.1016\/j.jsc.2022.05.001","volume":"114","author":"Caminata Alessio","year":"2022","unstructured":"Alessio, Caminata, Elisa, Gorla. Solving degree, last fall degree, and related invariants. Journal of Symbolic Computation, 114, 322\u2013335 (2022). https:\/\/doi.org\/10.1016\/j.jsc.2022.05.001","journal-title":"Journal of Symbolic Computation"},{"key":"9544_CR14","unstructured":"Nicolas, Courtois, Louis, Goubin, Jacques, Patarin. SFLASH, a fast asymmetric signature scheme for low-cost smartcards\u2013primitive specification and supporting documentation, in URL https:\/\/www.cosic.esat.kuleuven.ac.be\/nessie\/workshop. Citeseer, (1992)"},{"key":"9544_CR15","doi-asserted-by":"publisher","first-page":"392","DOI":"10.1007\/3-540-45539-6_27","volume":"1807","author":"Courtois Nicolas","year":"2000","unstructured":"Nicolas, Courtois, Alexander, Klimov, Jacques, Patarin, Adi, Shamir. Efficient algorithms for solving overdefined systems of multivariate polynomial equations. Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics), 1807, 392 \u2013 407, (2000). https:\/\/doi.org\/10.1007\/3-540-45539-6_27","journal-title":"Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)"},{"key":"9544_CR16","doi-asserted-by":"publisher","first-page":"209","DOI":"10.1016\/j.ffa.2018.11.008","volume":"56","author":"Canteaut Anne","year":"2019","unstructured":"Anne, Canteaut, L\u00e9o, Perrin. On CCZ-equivalence, extended-affine equivalence, and function twisting. Finite Fields and Their Applications, 56, 209\u2013246 (2019)","journal-title":"Finite Fields and Their Applications"},{"key":"9544_CR17","doi-asserted-by":"crossref","unstructured":"Vivien, Dubois, Pierre-Alain, Fouque, Adi, Shamir, Jacques, Stern. Practical cryptanalysis of SFLASH. in Annual International Cryptology Conference, (Springer, 2007), pp. 1\u201312","DOI":"10.1007\/978-3-540-74143-5_1"},{"key":"9544_CR18","doi-asserted-by":"crossref","unstructured":"Jintai, Ding. A new variant of the Matsumoto-Imai cryptosystem through perturbation. in International Workshop on Public Key Cryptography, (Springer, 2004), pp. 305\u2013318","DOI":"10.1007\/978-3-540-24632-9_22"},{"key":"9544_CR19","doi-asserted-by":"crossref","unstructured":"Jintai, Ding, Albrecht, Petzoldt, Dieter, Schmidt. The Matsumoto-Imai cryptosystem. Multivariate Public Key Cryptosystems, 25\u201360 (2020)","DOI":"10.1007\/978-1-0716-0987-3_3"},{"key":"9544_CR20","doi-asserted-by":"crossref","unstructured":"Jintai, Ding, Albrecht, Petzoldt, Dieter, Schmidt. Oil and Vinegar. Multivariate Public Key Cryptosystems, 89\u2013151 (2020)","DOI":"10.1007\/978-1-0716-0987-3_5"},{"key":"9544_CR21","doi-asserted-by":"crossref","unstructured":"Jintai, Ding, Dieter, Schmidt. Rainbow, a new multivariable polynomial signature scheme. in International conference on applied cryptography and network security, (Springer, 2005), pp. 164\u2013175","DOI":"10.1007\/11496137_12"},{"key":"9544_CR22","doi-asserted-by":"publisher","unstructured":"Jintai, Ding, Bo-Yin, Yang. Multivariate Public Key Cryptography, (Springer Berlin Heidelberg, Berlin, Heidelberg, 2009), pp. 193\u2013241, https:\/\/doi.org\/10.1007\/978-3-540-88702-7_6","DOI":"10.1007\/978-3-540-88702-7_6"},{"issue":"1","key":"9544_CR23","doi-asserted-by":"publisher","first-page":"61","DOI":"10.1016\/S0022-4049(99)00005-5","volume":"139","author":"Faug\u00e9re Jean-Charles","year":"1999","unstructured":"Jean-Charles, Faug\u00e9re. A new efficient algorithm for computing Gr\u00f6bner bases (F4). Journal of Pure and Applied Algebra, 139(1), 61 \u2013 88 (1999). https:\/\/doi.org\/10.1016\/S0022-4049(99)00005-5","journal-title":"Journal of Pure and Applied Algebra"},{"key":"9544_CR24","doi-asserted-by":"publisher","unstructured":"Faug\u00e8re, Jean-Charles. A new efficient algorithm for computing Gr\u00f6bner bases without reduction to zero (F5). pp. 75 \u2013 83 (2002). https:\/\/doi.org\/10.1145\/780506.780516","DOI":"10.1145\/780506.780516"},{"key":"9544_CR25","doi-asserted-by":"crossref","unstructured":"Pierre-Alain, Fouque, Louis, Granboulan, Jacques, Stern. Differential cryptanalysis for multivariate schemes. in Annual International Conference on the Theory and Applications of Cryptographic Techniques, (Springer, 2005), pp. 341\u2013353","DOI":"10.1007\/11426639_20"},{"key":"9544_CR26","doi-asserted-by":"crossref","unstructured":"Hiroki, Furue, Yasuhiko, Ikematsu, Yutaro, Kiyomura, Tsuyoshi, Takagi. A new variant of unbalanced oil and vinegar using quotient ring: QR-UOV. Advances in Cryptology \u2013 ASIACRYPT 2021, pp. 187\u2013217 (2021)","DOI":"10.1007\/978-3-030-92068-5_7"},{"key":"9544_CR27","doi-asserted-by":"crossref","unstructured":"Aviad, Kipnis, Adi, Shamir. Cryptanalysis of the oil and vinegar signature scheme. in Annual international cryptology conference, (Springer, 1998), pp. 257\u2013266.","DOI":"10.1007\/BFb0055733"},{"key":"9544_CR28","doi-asserted-by":"crossref","unstructured":"Louis\u00a0Goubin, Louis, Nicolas\u00a0T. Courtois. Cryptanalysis of the TTM cryptosystem. Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics), 1976, 44 \u2013 57 (2000)","DOI":"10.1007\/3-540-44448-3_4"},{"key":"9544_CR29","doi-asserted-by":"crossref","unstructured":"Tsutomu, Matsumoto, Hideki, Imai. Public quadratic polynomial-tuples for efficient signature-verification and message-encryption. in Advances in Cryptology\u2014EUROCRYPT\u201988: Workshop on the Theory and Application of Cryptographic Techniques Davos, Switzerland, May 25\u201327, 1988 Proceedings 7, (Springer, 1988), pp. 419\u2013453","DOI":"10.1007\/3-540-45961-8_39"},{"issue":"3","key":"9544_CR30","doi-asserted-by":"publisher","first-page":"20","DOI":"10.1007\/s00145-024-09501-w","volume":"37","author":"\u00d8ygarden Morten","year":"2024","unstructured":"Morten, \u00d8ygarden, Patrick, Felke, H\u00e5vard, Raddum. Analysis of multivariate encryption schemes: Application to Dob and $$C^*$$. Journal of Cryptology, 37(3), 20 (2024)","journal-title":"Journal of Cryptology"},{"key":"9544_CR31","doi-asserted-by":"crossref","unstructured":"Jacques, Patarin. Cryptanalysis of the Matsumoto and Imai public key scheme of Eurocrypt\u201988. in Advances in Cryptology\u2014CRYPT0\u201995: 15th Annual International Cryptology Conference Santa Barbara, California, USA, August 27\u201331, 1995 Proceedings 15, (Springer, 1995), pp. 248\u2013261","DOI":"10.1007\/3-540-44750-4_20"},{"key":"9544_CR32","doi-asserted-by":"crossref","unstructured":"Jacques, Patarin. Hidden fields equations (HFE) and isomorphisms of polynomials (IP): Two new families of asymmetric algorithms. In International Conference on the Theory and Applications of Cryptographic Techniques, (Springer, 1996), pp. 33\u201348","DOI":"10.1007\/3-540-68339-9_4"},{"key":"9544_CR33","unstructured":"Jacques, Patarin. The oil and vinegar signature scheme. Dagstuhl Workshop on Cryptography September, 1997, (1997). URL:https:\/\/cir.nii.ac.jp\/crid\/1571417125795682304"},{"key":"9544_CR34","doi-asserted-by":"publisher","unstructured":"Jeremy, Vates, Daniel, Smith-Tone. Key recovery attack for all parameters of HFE-. Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics), 10346 LNCS:272 \u2013 288, (2017). https:\/\/doi.org\/10.1007\/978-3-319-59879-6_16","DOI":"10.1007\/978-3-319-59879-6_16"}],"container-title":["Journal of Cryptology"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s00145-025-09544-7.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s00145-025-09544-7\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s00145-025-09544-7.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,9,6]],"date-time":"2025-09-06T18:38:10Z","timestamp":1757183890000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s00145-025-09544-7"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,6,9]]},"references-count":34,"journal-issue":{"issue":"3","published-print":{"date-parts":[[2025,7]]}},"alternative-id":["9544"],"URL":"https:\/\/doi.org\/10.1007\/s00145-025-09544-7","relation":{},"ISSN":["0933-2790","1432-1378"],"issn-type":[{"value":"0933-2790","type":"print"},{"value":"1432-1378","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025,6,9]]},"assertion":[{"value":"30 September 2024","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"14 April 2025","order":2,"name":"revised","label":"Revised","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"30 April 2025","order":3,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"9 June 2025","order":4,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}}],"article-number":"25"}}