cryptoProhard

worrier

hxp_39c3

Task: break an SIDH-like isogeny cryptosystem with noisy point pairs to decrypt the flag. Solution: eliminate error terms by multiplying all points by 3^n3 (which kills the error of that order), recover the isogeny via Weil pairing discrete logs on torsion points, then solve for the secret.

$ ls tags/ techniques/
Exploiting error term structure (order dividing 3^n3)Weil pairing for discrete log in torsion subgroupsLinear algebra over Z/2^n2 ZIsogeny recovery from noisy point pairs

🔒

Permission denied (requires tier.pro)

Sign in to access full writeups

Sign in with GitHub to continue. No email required.

$sign in

$ grep --similar

Similar writeups