{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,1,25]],"date-time":"2026-01-25T04:35:49Z","timestamp":1769315749603,"version":"3.49.0"},"reference-count":110,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","license":[{"start":{"date-parts":[[2017,1,1]],"date-time":"2017-01-01T00:00:00Z","timestamp":1483228800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/OAPA.html"}],"funder":[{"DOI":"10.13039\/501100001871","name":"Instituto de Telecomunica\u00e7\u00f5es and Funda\u00e7\u00e3o para Ci\u00eancia e a Tecnologia","doi-asserted-by":"publisher","award":["UID\/EEA\/50008\/2013"],"award-info":[{"award-number":["UID\/EEA\/50008\/2013"]}],"id":[{"id":"10.13039\/501100001871","id-type":"DOI","asserted-by":"publisher"}]},{"name":"SNSF ERC Transfer","award":["CRETP2-166734 FELICITY"],"award-info":[{"award-number":["CRETP2-166734 FELICITY"]}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Access"],"published-print":{"date-parts":[[2017]]},"DOI":"10.1109\/access.2017.2748179","type":"journal-article","created":{"date-parts":[[2017,9,1]],"date-time":"2017-09-01T18:23:08Z","timestamp":1504290188000},"page":"24184-24202","source":"Crossref","is-referenced-by-count":16,"title":["A Practical View of the State-of-the-Art of Lattice-Based Cryptanalysis"],"prefix":"10.1109","volume":"5","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-5006-3662","authenticated-orcid":false,"given":"Artur","family":"Mariano","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Thijs","family":"Laarhoven","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Fabio","family":"Correia","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Manuel","family":"Rodrigues","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Gabriel","family":"Falcao","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1109\/LCA.2016.2615617"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-14712-8_8"},{"key":"ref33","article-title":"Assessing the hardness of SVP algorithms in the presence of CPUs and GPUs","author":"correia","year":"2014"},{"key":"ref32","first-page":"1","author":"chen","year":"2011","journal-title":"BKZ 2 0 Better Lattice Security Estimates"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1007\/11792086_17"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-88403-3_6"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-15291-7_21"},{"key":"ref36","first-page":"1","author":"crockett","year":"2017","journal-title":"Ring-LWE challenges"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1109\/PDP.2016.95"},{"key":"ref34","first-page":"1","article-title":"Parallel improved Schnorr&#x2013;Euchner enumeration SE++ on shared and distributed memory systems, with and without extreme pruning","volume":"7","author":"correia","year":"2016","journal-title":"J Wireless Mobile Netw Ubiquitous Comput Dependable Appl"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1145\/2488608.2488680"},{"key":"ref27","author":"bos","year":"2014","journal-title":"Sieving for shortest vectors in ideal lattices a practical perspective"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1145\/2898420.2898422"},{"key":"ref20","first-page":"1","article-title":"Efficient (ideal) lattice sieving using cross-polytope LSH","author":"becker","year":"2015"},{"key":"ref22","first-page":"203","author":"bischof","year":"2015","journal-title":"Nearest Planes in Practice"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-25405-5_8"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1109\/HPCSim.2016.7568326"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1016\/j.tcs.2008.12.045"},{"key":"ref101","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-42001-6_6"},{"key":"ref26","article-title":"Another NP-complete partition problem and the complexity of computing short vectors in a lattice","author":"van emde-boas","year":"1981"},{"key":"ref100","first-page":"145","article-title":"Progress on LLL and lattice reduction","author":"schnorr","year":"2010","journal-title":"The LLL Algorithm Information Security and Cryptography"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1145\/792538.792543"},{"key":"ref50","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-54631-0_24"},{"key":"ref51","doi-asserted-by":"publisher","DOI":"10.1088\/1742-6596\/608\/1\/012037"},{"key":"ref59","first-page":"293","author":"liu","year":"2013","journal-title":"Solving BDD by Enumeration An Update"},{"key":"ref58","first-page":"319","author":"lindner","year":"2011","journal-title":"Better Key Sizes (and Attacks) for LWE-Based Encryption"},{"key":"ref57","doi-asserted-by":"publisher","DOI":"10.1007\/BF01457454"},{"key":"ref56","author":"laarhoven","year":"2016","journal-title":"Finding closest lattice vectors using approximate Voronoi cells"},{"key":"ref55","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-662-47989-6_1"},{"key":"ref54","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-23951-9_12"},{"key":"ref53","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-39555-5_31"},{"key":"ref52","doi-asserted-by":"publisher","DOI":"10.1145\/800061.808749"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1090\/S0025-5718-1985-0777278-8"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1109\/TIT.2002.800499"},{"key":"ref3","author":"aggarwal","year":"2013","journal-title":"A note on discrete Gaussian combinations of lattice vectors"},{"key":"ref6","first-page":"10","article-title":"The shortest vector problem in \n$L_{2}$\n is NP-hard for randomized reductions","author":"ajtai","year":"1998","journal-title":"Proc STOC"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1145\/237814.237838"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1109\/CCC.2002.1004339"},{"key":"ref49","doi-asserted-by":"publisher","DOI":"10.1007\/BFb0054868"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1145\/258533.258604"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1145\/380752.380857"},{"key":"ref46","doi-asserted-by":"publisher","DOI":"10.1007\/BFb0052231"},{"key":"ref45","doi-asserted-by":"publisher","DOI":"10.1109\/TIT.2011.2143830"},{"key":"ref48","first-page":"300","article-title":"A pragmatic implementation of non-blocking linked-lists","author":"harris","year":"2001","journal-title":"Proc DISC"},{"key":"ref47","first-page":"447","author":"hanrot","year":"2011","journal-title":"Analyzing Blockwise Lattice Algorithms Using Dynamical Systems"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-13190-5_13"},{"key":"ref41","doi-asserted-by":"publisher","DOI":"10.2197\/ipsjjip.23.67"},{"key":"ref44","first-page":"1","author":"garc?a-morch\u00f3n","year":"2015","journal-title":"HIMMO A lightweight collusionresistant key predistribution scheme"},{"key":"ref43","first-page":"207","article-title":"Finding short lattice vectors within Mordell&#x2019;s inequality","author":"gama","year":"2008","journal-title":"Proc STOC"},{"key":"ref73","doi-asserted-by":"publisher","DOI":"10.1145\/1806689.1806739"},{"key":"ref72","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-88702-7_5"},{"key":"ref71","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-40041-4_2"},{"key":"ref70","first-page":"84","article-title":"Efficient reductions among lattice problems","author":"micciancio","year":"2008","journal-title":"Proc 19th Ann ACM-SIAM Symp Discrete Algorithms (SODA)"},{"key":"ref76","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-662-49890-3_31"},{"key":"ref77","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-23178-0_40"},{"key":"ref74","doi-asserted-by":"publisher","DOI":"10.1137\/1.9781611973075.119"},{"key":"ref75","author":"micciancio","year":"2015","journal-title":"Practical Predictable Lattice Basis Reduction"},{"key":"ref78","doi-asserted-by":"publisher","DOI":"10.1145\/1576702.1576740"},{"key":"ref79","doi-asserted-by":"publisher","DOI":"10.1109\/IMW.2013.6582088"},{"key":"ref60","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-78440-1_10"},{"key":"ref62","doi-asserted-by":"publisher","DOI":"10.1109\/PDP.2017.60"},{"key":"ref61","first-page":"1","author":"lyubashevsky","year":"2010","journal-title":"On Ideal Lattices and Learning With Errors Over Rings"},{"key":"ref63","article-title":"High performance algorithms for lattice-based cryptanalysis","author":"mariano","year":"2016"},{"key":"ref64","doi-asserted-by":"publisher","DOI":"10.1109\/PDP.2016.31"},{"key":"ref65","doi-asserted-by":"publisher","DOI":"10.1109\/PDP.2016.31"},{"key":"ref66","first-page":"162","article-title":"A vectorized, cache efficient LLL implementation","author":"mariano","year":"2016","journal-title":"Proc 12th Int Meet High Perform Comput Comput Sci"},{"key":"ref67","doi-asserted-by":"publisher","DOI":"10.1109\/PDP.2016.37"},{"key":"ref68","doi-asserted-by":"publisher","DOI":"10.1109\/ICPP.2015.68"},{"key":"ref2","first-page":"733","article-title":"Solving the shortest vector problem in \n$2^{n}$\n time via discrete Gaussian sampling","author":"aggarwal","year":"2015","journal-title":"Proc STOC"},{"key":"ref69","doi-asserted-by":"publisher","DOI":"10.1109\/SBAC-PAD.2014.18"},{"key":"ref1","year":"2016","journal-title":"AMD FirePro S9170 Server GPU"},{"key":"ref109","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-52153-4_3"},{"key":"ref95","doi-asserted-by":"publisher","DOI":"10.1145\/1568318.1568324"},{"key":"ref108","doi-asserted-by":"publisher","DOI":"10.1109\/18.481786"},{"key":"ref94","first-page":"131","author":"regev","year":"2006","journal-title":"Lattice-Based Cryptography"},{"key":"ref107","article-title":"Lattice-based cryptography","author":"van de pol","year":"2011"},{"key":"ref93","doi-asserted-by":"publisher","DOI":"10.1109\/CCC.2010.26"},{"key":"ref106","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-10366-7_36"},{"key":"ref92","doi-asserted-by":"publisher","DOI":"10.1145\/1089242.1089247"},{"key":"ref105","first-page":"179","article-title":"Floating-point LLL: Theoretical and practical aspects","author":"stehl\u00e9","year":"2010","journal-title":"The LLL Algorithm Information Security and Cryptography"},{"key":"ref91","first-page":"1","author":"plantard","year":"2013","journal-title":"Creating a challenge for ideal lattices"},{"key":"ref104","doi-asserted-by":"publisher","DOI":"10.1137\/S0097539795293172"},{"key":"ref90","first-page":"99","author":"pietrzak","year":"2012","journal-title":"Cryptography From Learning Parity With Noise"},{"key":"ref103","doi-asserted-by":"publisher","DOI":"10.1109\/SFCS.1994.365700"},{"key":"ref102","doi-asserted-by":"publisher","DOI":"10.1007\/BF01581144"},{"key":"ref110","first-page":"288","article-title":"Cryptanalysis of the goldreich-goldwasser-halevi cryptosystem from crypto 1997","volume":"1666","author":"nguyen","year":"1999","journal-title":"Adv Cryptology"},{"key":"ref98","doi-asserted-by":"publisher","DOI":"10.1016\/0304-3975(87)90064-8"},{"key":"ref99","doi-asserted-by":"publisher","DOI":"10.1007\/3-540-36494-3_14"},{"key":"ref96","author":"rietman","year":"2016","journal-title":"Collusion Attack on HIMMO"},{"key":"ref97","first-page":"375","article-title":"Sieving for short vectors in ideal lattices","author":"schneider","year":"2013","journal-title":"Proc AFRICACRYPT"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1007\/s10623-013-9864-x"},{"key":"ref11","first-page":"429","author":"albrecht","year":"2014","journal-title":"Lazy Modulus Switching for the BKW Algorithm on LWE"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/FPL.2015.7293940"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-56614-6_3"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-662-49890-3_30"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-22006-7_34"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1007\/BF02579403"},{"key":"ref82","first-page":"146","article-title":"The two faces of lattices in cryptology","author":"nguyen","year":"2001","journal-title":"Proc CALCON"},{"key":"ref17","article-title":"A parallel LLL using POSIX threads","author":"backes","year":"2008"},{"key":"ref81","doi-asserted-by":"publisher","DOI":"10.1137\/070705702"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-24650-0_4"},{"key":"ref84","doi-asserted-by":"publisher","DOI":"10.1515\/JMC.2008.009"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1112\/S1461157014000229"},{"key":"ref83","author":"may","year":"2009","journal-title":"The LLL Algorithm Survey and Applications"},{"key":"ref80","doi-asserted-by":"publisher","DOI":"10.1109\/JPROC.2015.2435018"},{"key":"ref89","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-85174-5_31"},{"key":"ref85","year":"2016","journal-title":"NVIDIA QUADRO P6000"},{"key":"ref86","year":"2017","journal-title":"White Paper NVIDIA Tesla P100"},{"key":"ref87","doi-asserted-by":"publisher","DOI":"10.1109\/TIT.1984.1056942"},{"key":"ref88","article-title":"A survey on fully homomorphic encryption: An engineering perspective","author":"paulo martins","year":"0","journal-title":"ACM Comput Surv"}],"container-title":["IEEE Access"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/6287639\/7859429\/08023973.pdf?arnumber=8023973","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2021,10,11]],"date-time":"2021-10-11T02:59:41Z","timestamp":1633921181000},"score":1,"resource":{"primary":{"URL":"http:\/\/ieeexplore.ieee.org\/document\/8023973\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2017]]},"references-count":110,"URL":"https:\/\/doi.org\/10.1109\/access.2017.2748179","relation":{},"ISSN":["2169-3536"],"issn-type":[{"value":"2169-3536","type":"electronic"}],"subject":[],"published":{"date-parts":[[2017]]}}}