Joshua DeatonUniversity of Cincinnati, OH, USAJintai DingUniversity of Cincinnati, OH, USA
IACR Cryptol. ePrint Arch., 2021.1
Often times, the ability to distinguish between random data and a public key can leads to an attack against the cryptosystem itself. In this paper, we will show experimentally a very efficient distinguisher based on the distribution of ranks of the symmetric matrices associated with the central map in the multivariate cryptosystem HFE when the degree D of the central map is very small.