Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

The SIKE comparison is not particularly inconsistent since Bernstein has been banging the drum that structured lattices may not be as secure as thought for years now.

Currently the best attacks on NTRU, Kyber, etc, are essentially the same generic attacks that work for something like Frodo, which works on unstructured lattices. And while the resistance of unstructured attacks is pretty well studied at this point, it is not unreasonable to suspect that the algebraic structure in the more efficient lattice schemes can lead to more efficient attacks. How efficient? Who knows.



Without wanting to engage much more deeply on this topic let me just say I concede any cryptography point 'pbsd makes.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: