G - 16th workshop on Elliptic Curve Cryptography
G - 16th workshop on Elliptic Curve Cryptography
G - 16th workshop on Elliptic Curve Cryptography
You also want an ePaper? Increase the reach of your titles
YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.
Implicati<strong>on</strong> to ECDLP<br />
• Che<strong>on</strong>’ algorithm can solve ECDLP in ECC which static DH<br />
Oracle is available in<br />
• ElGamal Encrypti<strong>on</strong> Scheme [ElGamal84]<br />
• Ford-Kaliski Key Retrieval Scheme [FK00]<br />
G, xG<br />
P<br />
d Oracle Calls<br />
G, xG, x d G<br />
Che<strong>on</strong>’s algorithm<br />
√d + √r/d<br />
xP<br />
Static DH<br />
Oracle<br />
The ECDLP can be solved<br />
by Che<strong>on</strong>’s algorithm<br />
in this framework<br />
x<br />
5<br />
Copyright 2012 FUJITSU LABORATORIES Ltd.