{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,2,21]],"date-time":"2025-02-21T11:29:06Z","timestamp":1740137346497,"version":"3.37.3"},"reference-count":56,"publisher":"Springer Science and Business Media LLC","issue":"4","license":[{"start":{"date-parts":[[2019,7,23]],"date-time":"2019-07-23T00:00:00Z","timestamp":1563840000000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"},{"start":{"date-parts":[[2019,7,23]],"date-time":"2019-07-23T00:00:00Z","timestamp":1563840000000},"content-version":"vor","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"funder":[{"DOI":"10.13039\/501100005073","name":"Agency for Defense Development","doi-asserted-by":"publisher","award":["UD170109ED","UD170109ED"],"award-info":[{"award-number":["UD170109ED","UD170109ED"]}],"id":[{"id":"10.13039\/501100005073","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["Int. J. Inf. Secur."],"published-print":{"date-parts":[[2020,8]]},"DOI":"10.1007\/s10207-019-00456-9","type":"journal-article","created":{"date-parts":[[2019,7,23]],"date-time":"2019-07-23T15:03:09Z","timestamp":1563894189000},"page":"383-399","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":4,"title":["EMBLEM: (R)LWE-based key encapsulation with a new multi-bit encoding method"],"prefix":"10.1007","volume":"19","author":[{"given":"Minhye","family":"Seo","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Suhri","family":"Kim","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Dong Hoon","family":"Lee","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jong Hwan","family":"Park","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2019,7,23]]},"reference":[{"key":"456_CR1","doi-asserted-by":"crossref","unstructured":"Ajtai, M.: Generating hard instances of lattice problems. In: Proceedings of the Twenty-Eighth Annual ACM Symposium on Theory of Computing, pp. 99\u2013108. ACM (1996)","DOI":"10.1145\/237814.237838"},{"key":"456_CR2","doi-asserted-by":"crossref","unstructured":"Albrecht, M.R.: On dual lattice attacks against small-secret lwe and parameter choices in helib and seal. In: Annual International Conference on the Theory and Applications of Cryptographic Techniques, pp. 103\u2013129. Springer (2017)","DOI":"10.1007\/978-3-319-56614-6_4"},{"key":"456_CR3","doi-asserted-by":"publisher","first-page":"351","DOI":"10.1007\/978-3-319-98113-0_19","volume":"2018","author":"MR Albrecht","year":"2018","unstructured":"Albrecht, M.R., Curtis, B.R., Deo, A., Davidson, A., Player, R., Postlethwaite, E.W., Virdia, F., Wunderer, T.: Estimate all the LWE, NTRU schemes!. Secur. Cryptogr. Netw. SCN 2018, 351\u2013367 (2018)","journal-title":"Secur. Cryptogr. Netw. SCN"},{"key":"456_CR4","doi-asserted-by":"crossref","unstructured":"Albrecht, M.R., Orsini, E., Paterson, K.G., Peer, G., Smart, N.P.: Tightly secure ring-lwe based key encapsulation with short ciphertexts. In: Computer Security-ESORICS 2017, Part I, pp. 29\u201346. Springer (2017)","DOI":"10.1007\/978-3-319-66402-6_4"},{"issue":"3","key":"456_CR5","doi-asserted-by":"publisher","first-page":"169","DOI":"10.1515\/jmc-2015-0016","volume":"9","author":"MR Albrecht","year":"2015","unstructured":"Albrecht, M.R., Player, R., Scott, S.: On the concrete hardness of learning with errors. J. Math. Cryptol. 9(3), 169\u2013203 (2015)","journal-title":"J. Math. Cryptol."},{"key":"456_CR6","unstructured":"Alkim, E., Avanzi, R., Bos, J., Ducas, L., Piedra, A., P\u00f6ppelmann, T., Schwabe, P., Stebila, D.: Newhope\u2013algorithm specifications and supporting documentation (2017). URL \nhttps:\/\/newhopecrypto.org\/data\/NewHope_2017_12_21.pdf\n\n. Accessed 01 Nov 2018"},{"key":"456_CR7","unstructured":"Alkim, E., Bos, J., Ducas, L., Longa, P., Mironov, I., Naehrig, M., Nikolaenko, V., Peikert, C., Raghunathan, A., Stebila, D., Easterbrook, K., LaMacchia, B.: Frodokem\u2013learning with errors key encapsulation (2017). URL \nhttps:\/\/frodokem.org\/files\/FrodoKEM-specification-20171130.pdf\n\n. Accessed 01 Nov 2018"},{"key":"456_CR8","unstructured":"Alkim, E., Ducas, L., P\u00f6ppelmann, T., Schwabe, P.: Post-quantum key exchange-a new hope. In: USENIX Security Symposium, pp. 327\u2013343 (2016)"},{"key":"456_CR9","doi-asserted-by":"crossref","unstructured":"Alwen, J., Krenn, S., Pietrzak, K., Wichs, D.: Learning with rounding, revisited. In: Advances in Cryptology\u2013CRYPTO 2013, pp. 57\u201374. Springer (2013)","DOI":"10.1007\/978-3-642-40041-4_4"},{"key":"456_CR10","unstructured":"Baan, H., Bhattacharya, S., Fluhrer, S., Garcia-Morchon, O., Laarhoven, T., Rietman, R., Saarinen, M.J.O., Tolhuizen, L., Zhang, Z.: Round5: Compact and fast post-quantum public-key encryption. Cryptology ePrint Archive, Report 2019\/090 (2019). \nhttps:\/\/eprint.iacr.org\/2019\/090\n\n. Accessed 01 Apr 2019"},{"key":"456_CR11","doi-asserted-by":"crossref","unstructured":"Bai, S., Galbraith, S.D.: Lattice decoding attacks on binary lwe. In: Australasian Conference on Information Security and Privacy, pp. 322\u2013337. Springer (2014)","DOI":"10.1007\/978-3-319-08344-5_21"},{"issue":"1","key":"456_CR12","doi-asserted-by":"publisher","first-page":"217","DOI":"10.1007\/BF02574039","volume":"13","author":"W Banaszczyk","year":"1995","unstructured":"Banaszczyk, W.: Inequalities for convex bodies and polar reciprocal lattices in r n. Discrete Comput. Geom. 13(1), 217\u2013231 (1995)","journal-title":"Discrete Comput. Geom."},{"key":"456_CR13","first-page":"719","volume":"2012","author":"A Banerjee","year":"2012","unstructured":"Banerjee, A., Peikert, C., Rosen, A.: Pseudorandom functions and lattices. Adv. Cryptol. EUROCRYPT 2012, 719\u2013737 (2012)","journal-title":"Adv. Cryptol. EUROCRYPT"},{"key":"456_CR14","unstructured":"Bhattacharya, S., Garcia-Morchon, O., Laarhoven, T., Rietman, R., Saarinen, M.J.O., Tolhuizen, L., Zhang, Z.: Round5: Compact and fast post-quantum public-key encryption. Submitted for publication, August (2018)"},{"key":"456_CR15","doi-asserted-by":"crossref","unstructured":"Bodrato, M.: Towards optimal toom-cook multiplication for univariate and multivariate polynomials in characteristic 2 and 0. In: International Workshop on the Arithmetic of Finite Fields, pp. 116\u2013133. Springer (2007)","DOI":"10.1007\/978-3-540-73074-3_10"},{"key":"456_CR16","doi-asserted-by":"crossref","unstructured":"Bogdanov, A., Guo, S., Masny, D., Richelson, S., Rosen, A.: On the hardness of learning with rounding over small modulus. In: Theory of Cryptography Conference, pp. 209\u2013224. Springer (2016)","DOI":"10.1007\/978-3-662-49096-9_9"},{"key":"456_CR17","doi-asserted-by":"crossref","unstructured":"Bos, J., Costello, C., Ducas, L., Mironov, I., Naehrig, M., Nikolaenko, V., Raghunathan, A., Stebila, D.: Frodo: Take off the ring! practical, quantum-secure key exchange from lwe. In: Proceedings of the 2016 ACM SIGSAC Conference on Computer and Communications Security, pp. 1006\u20131018. ACM (2016)","DOI":"10.1145\/2976749.2978425"},{"key":"456_CR18","doi-asserted-by":"crossref","unstructured":"Bos, J., Ducas, L., Kiltz, E., Lepoint, T., Lyubashevsky, V., Schanck, J.M., Schwabe, P., Seiler, G., Stehl\u00e9, D.: Crystals-kyber: a cca-secure module-lattice-based kem. In: 2018 IEEE European Symposium on Security and Privacy (EuroS&P). IEEE (2018)","DOI":"10.1109\/EuroSP.2018.00032"},{"key":"456_CR19","doi-asserted-by":"crossref","unstructured":"Bos, J.W., Costello, C., Naehrig, M., Stebila, D.: Post-quantum key exchange for the tls protocol from the ring learning with errors problem. In: 2015 IEEE Symposium on Security and Privacy (SP), pp. 553\u2013570. IEEE (2015)","DOI":"10.1109\/SP.2015.40"},{"issue":"3","key":"456_CR20","doi-asserted-by":"publisher","first-page":"13","DOI":"10.1145\/2633600","volume":"6","author":"Z Brakerski","year":"2014","unstructured":"Brakerski, Z., Gentry, C., Vaikuntanathan, V.: (Leveled) fully homomorphic encryption without bootstrapping. ACM Trans. Comput. Theory 6(3), 13 (2014)","journal-title":"ACM Trans. Comput. Theory"},{"key":"456_CR21","doi-asserted-by":"crossref","unstructured":"Brakerski, Z., Langlois, A., Peikert, C., Regev, O., Stehl\u00e9, D.: Classical hardness of learning with errors. In: Proceedings of the forty-fifth annual ACM symposium on Theory of computing, pp. 575\u2013584. ACM (2013)","DOI":"10.1145\/2488608.2488680"},{"key":"456_CR22","doi-asserted-by":"crossref","unstructured":"Brakerski, Z., Vaikuntanathan, V.: Fully homomorphic encryption from ring-lwe and security for key dependent messages. In: Annual cryptology conference, pp. 505\u2013524. Springer (2011)","DOI":"10.1007\/978-3-642-22792-9_29"},{"key":"456_CR23","doi-asserted-by":"crossref","unstructured":"Bruinderink, L.G., H\u00fclsing, A., Lange, T., Yarom, Y.: Flush, gauss, and reload\u2013a cache attack on the bliss lattice-based signature scheme. In: International Conference on Cryptographic Hardware and Embedded Systems, pp. 323\u2013345. Springer (2016)","DOI":"10.1007\/978-3-662-53140-2_16"},{"key":"456_CR24","doi-asserted-by":"crossref","unstructured":"Castryck, W., Iliashenko, I., Vercauteren, F.: Provably weak instances of ring-lwe revisited. In: Annual International Conference on the Theory and Applications of Cryptographic Techniques, pp. 147\u2013167. Springer (2016)","DOI":"10.1007\/978-3-662-49890-3_6"},{"key":"456_CR25","doi-asserted-by":"crossref","unstructured":"Chen, L., Chen, L., Jordan, S., Liu, Y.K., Moody, D., Peralta, R., Perlner, R., Smith-Tone, D.: Report on post-quantum cryptography. US Department of Commerce, National Institute of Standards and Technology (2016)","DOI":"10.6028\/NIST.IR.8105"},{"key":"456_CR26","doi-asserted-by":"crossref","unstructured":"Cheon, J.H., Han, K., Kim, J., Lee, C., Son, Y.: A practical post-quantum public-key cryptosystem based on spLWE. In: International Conference on Information Security and Cryptology, pp. 51\u201374. Springer (2016)","DOI":"10.1007\/978-3-319-53177-9_3"},{"key":"456_CR27","doi-asserted-by":"crossref","unstructured":"Cheon, J.H., Kim, D., Lee, J., Song, Y.: Lizard: Cut off the tail! a practical post-quantum public-key encryption from lwe and lwr. In: International Conference on Security and Cryptography for Networks, pp. 160\u2013177. Springer (2018)","DOI":"10.1007\/978-3-319-98113-0_9"},{"key":"456_CR28","doi-asserted-by":"crossref","unstructured":"D\u2019Anvers, J.P., Karmakar, A., Roy, S.S., Vercauteren, F.: Saber: Module-lwr based key exchange, cpa-secure encryption and cca-secure kem. In: International Conference on Cryptology in Africa, pp. 282\u2013305. Springer (2018)","DOI":"10.1007\/978-3-319-89339-6_16"},{"issue":"6","key":"456_CR29","doi-asserted-by":"publisher","first-page":"644","DOI":"10.1109\/TIT.1976.1055638","volume":"22","author":"W Diffie","year":"1976","unstructured":"Diffie, W., Hellman, M.: New directions in cryptography. IEEE Trans. Inf. Theory 22(6), 644\u2013654 (1976)","journal-title":"IEEE Trans. Inf. Theory"},{"key":"456_CR30","first-page":"688","volume":"2012","author":"J Ding","year":"2012","unstructured":"Ding, J., Xie, X., Lin, X.: A simple provably secure key exchange scheme based on the learning with errors problem. IACR Cryptol. EPrint Arch. 2012, 688 (2012)","journal-title":"IACR Cryptol. EPrint Arch."},{"key":"456_CR31","doi-asserted-by":"crossref","unstructured":"Elias, Y., Lauter, K.E., Ozman, E., Stange, K.E.: Provably weak instances of ring-lwe. In: Annual Cryptology Conference, pp. 63\u201392. Springer (2015)","DOI":"10.1007\/978-3-662-47989-6_4"},{"key":"456_CR32","doi-asserted-by":"crossref","unstructured":"Gentry, C., Halevi, S., Smart, N.P.: Homomorphic evaluation of the aes circuit. In: Advances in cryptology\u2013crypto 2012, pp. 850\u2013867. Springer (2012)","DOI":"10.1007\/978-3-642-32009-5_49"},{"key":"456_CR33","unstructured":"Goldwasser, S., Kalai, Y.T., Peikert, C., Vaikuntanathan, V.: Robustness of the learning with errors assumption (2010)"},{"key":"456_CR34","doi-asserted-by":"crossref","unstructured":"Halevi, S., Shoup, V.: Algorithms in helib. In: International Cryptology Conference, pp. 554\u2013571. Springer (2014)","DOI":"10.1007\/978-3-662-44371-2_31"},{"key":"456_CR35","unstructured":"Hamburg, M.: Module-lwe key exchange and encryption: The three bears (2017)"},{"key":"456_CR36","doi-asserted-by":"crossref","unstructured":"Hofheinz, D., H\u00f6velmanns, K., Kiltz, E.: A modular analysis of the fujisaki-okamoto transformation. In: Theory of Cryptography Conference, pp. 341\u2013371. Springer (2017)","DOI":"10.1007\/978-3-319-70500-2_12"},{"key":"456_CR37","doi-asserted-by":"crossref","unstructured":"Impagliazzo, R., Zuckerman, D.: How to recycle random bits. In: 30th Annual Symposium on Foundations of Computer Science, pp. 248\u2013253. IEEE (1989)","DOI":"10.1109\/SFCS.1989.63486"},{"key":"456_CR38","doi-asserted-by":"crossref","unstructured":"Jiang, H., Zhang, Z., Chen, L., Wang, H., Ma, Z.: Ind-cca-secure key encapsulation mechanism in the quantum random oracle model, revisited. In: Annual International Cryptology Conference, pp. 96\u2013125. Springer (2018)","DOI":"10.1007\/978-3-319-96878-0_4"},{"issue":"3","key":"456_CR39","doi-asserted-by":"publisher","first-page":"565","DOI":"10.1007\/s10623-014-9938-4","volume":"75","author":"A Langlois","year":"2015","unstructured":"Langlois, A., Stehl\u00e9, D.: Worst-case to average-case reductions for module lattices. Des. Codes Cryptogr. 75(3), 565\u2013599 (2015)","journal-title":"Des. Codes Cryptogr."},{"key":"456_CR40","doi-asserted-by":"crossref","unstructured":"Lindner, R., Peikert, C.: Better key sizes (and attacks) for lwe-based encryption. In: CT-RSA, vol. 6558, pp. 319\u2013339. Springer (2011)","DOI":"10.1007\/978-3-642-19074-2_21"},{"key":"456_CR41","doi-asserted-by":"crossref","unstructured":"Lyubashevsky, V.: Digital signatures based on the hardness of ideal lattice problems in all rings. In: Advances in Cryptology\u2013ASIACRYPT 2016: 22nd International Conference on the Theory and Application of Cryptology and Information Security, Hanoi, Vietnam, Dec 4\u20138, 2016, Proceedings, Part II 22, pp. 196\u2013214. Springer (2016)","DOI":"10.1007\/978-3-662-53890-6_7"},{"key":"456_CR42","doi-asserted-by":"crossref","unstructured":"Lyubashevsky, V., Peikert, C., Regev, O.: On ideal lattices and learning with errors over rings. In: Annual International Conference on the Theory and Applications of Cryptographic Techniques, pp. 1\u201323. Springer (2010)","DOI":"10.1007\/978-3-642-13190-5_1"},{"key":"456_CR43","doi-asserted-by":"crossref","unstructured":"Lyubashevsky, V., Peikert, C., Regev, O.: A toolkit for ring-lwe cryptography. In: Annual International Conference on the Theory and Applications of Cryptographic Techniques, pp. 35\u201354. Springer (2013)","DOI":"10.1007\/978-3-642-38348-9_3"},{"key":"456_CR44","doi-asserted-by":"crossref","unstructured":"Micciancio, D., Peikert, C.: Hardness of sis and lwe with small parameters. In: Advances in Cryptology\u2013CRYPTO 2013, pp. 21\u201339. Springer (2013)","DOI":"10.1007\/978-3-642-40041-4_2"},{"key":"456_CR45","doi-asserted-by":"crossref","unstructured":"Peikert, C.: Lattice cryptography for the internet. In: International Workshop on Post-Quantum Cryptography, pp. 197\u2013219. Springer (2014)","DOI":"10.1007\/978-3-319-11659-4_12"},{"key":"456_CR46","doi-asserted-by":"crossref","unstructured":"Peikert, C.: How (not) to instantiate ring-lwe. In: International Conference on Security and Cryptography for Networks, pp. 411\u2013430. Springer (2016)","DOI":"10.1007\/978-3-319-44618-9_22"},{"key":"456_CR47","doi-asserted-by":"crossref","unstructured":"Peikert, C., Vaikuntanathan, V., Waters, B.: A framework for efficient and composable oblivious transfer. In: Crypto, vol. 5157, pp. 554\u2013571. Springer (2008)","DOI":"10.1007\/978-3-540-85174-5_31"},{"key":"456_CR48","unstructured":"Phong, L.T., Hayashi, T., Aono, Y., Moriai, S.: Lotus: Algorithm specifications and supporting documentation (2017). URL \nhttps:\/\/www2.nict.go.jp\/security\/lotus\/LOTUS_specifications.pdf\n\n. Accessed 01 Nov 2018"},{"key":"456_CR49","doi-asserted-by":"crossref","unstructured":"Regev, O.: On lattices, learning with errors, random linear codes, and cryptography. In: In STOC (2005)","DOI":"10.1145\/1060590.1060603"},{"issue":"6","key":"456_CR50","doi-asserted-by":"publisher","first-page":"34","DOI":"10.1145\/1568318.1568324","volume":"56","author":"O Regev","year":"2009","unstructured":"Regev, O.: On lattices, learning with errors, random linear codes, and cryptography. J. ACM 56(6), 34 (2009)","journal-title":"J. ACM"},{"issue":"2","key":"456_CR51","doi-asserted-by":"publisher","first-page":"120","DOI":"10.1145\/359340.359342","volume":"21","author":"RL Rivest","year":"1978","unstructured":"Rivest, R.L., Shamir, A., Adleman, L.: A method for obtaining digital signatures and public-key cryptosystems. Commun. ACM 21(2), 120\u2013126 (1978)","journal-title":"Commun. ACM"},{"key":"456_CR52","doi-asserted-by":"crossref","unstructured":"Saarinen, M.J.O.: Hila5: On reliability, reconciliation, and error correction for ring-lwe encryption. In: International Conference on Selected Areas in Cryptography, pp. 192\u2013212. Springer (2017)","DOI":"10.1007\/978-3-319-72565-9_10"},{"key":"456_CR53","doi-asserted-by":"crossref","unstructured":"Saito, T., Xagawa, K., Yamakawa, T.: Tightly-secure key-encapsulation mechanism in the quantum random oracle model. In: Annual International Conference on the Theory and Applications of Cryptographic Techniques, pp. 520\u2013551. Springer (2018)","DOI":"10.1007\/978-3-319-78372-7_17"},{"key":"456_CR54","unstructured":"Shor, P.W.: Algorithms for quantum computation: Discrete logarithms and factoring. In: 1994 Proceedings 35th Annual Symposium on Foundations of Computer Science, pp. 124\u2013134. IEEE (1994)"},{"key":"456_CR55","unstructured":"Steinfeld, R., Sakzad, A., Zhao, R.K.: Titanium: Proposal for a nist post-quantum public-key encryption and kem standard (2017)"},{"key":"456_CR56","doi-asserted-by":"crossref","unstructured":"Targhi, E.E., Unruh, D.: Post-quantum security of the fujisaki-okamoto and oaep transforms. In: Theory of Cryptography Conference, pp. 192\u2013216. Springer (2016)","DOI":"10.1007\/978-3-662-53644-5_8"}],"container-title":["International Journal of Information Security"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/s10207-019-00456-9.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/article\/10.1007\/s10207-019-00456-9\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/s10207-019-00456-9.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2020,7,21]],"date-time":"2020-07-21T23:37:55Z","timestamp":1595374675000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/s10207-019-00456-9"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2019,7,23]]},"references-count":56,"journal-issue":{"issue":"4","published-print":{"date-parts":[[2020,8]]}},"alternative-id":["456"],"URL":"https:\/\/doi.org\/10.1007\/s10207-019-00456-9","relation":{},"ISSN":["1615-5262","1615-5270"],"issn-type":[{"type":"print","value":"1615-5262"},{"type":"electronic","value":"1615-5270"}],"subject":[],"published":{"date-parts":[[2019,7,23]]},"assertion":[{"value":"23 July 2019","order":1,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}},{"order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Compliance with ethical standards"}},{"value":"The authors declare that they have no conflict of interest.","order":2,"name":"Ethics","group":{"name":"EthicsHeading","label":"Conflict of interest"}},{"value":"This article does not contain any studies with human participants or animals performed by any of the authors.","order":3,"name":"Ethics","group":{"name":"EthicsHeading","label":"Ethical approval"}}]}}