International Association for Cryptologic Research

International Association
for Cryptologic Research


Practical Attack on All Parameters of the DME Signature Scheme

Pierre Briaud , Inria Paris & Sorbonne Université
Maxime Bros , NIST
Ray Perlner , NIST
Daniel Smith-Tone , NIST & University of Louisville
DOI: 10.1007/978-3-031-58754-2_1 (login may be required)
Search ePrint
Search Google
Presentation: Slides
Conference: EUROCRYPT 2024
Abstract: DME is a multivariate scheme submitted to the call for additional signatures recently launched by NIST. Its performance is one of the best among all the candidates. The public key is constructed from the alternation of very structured linear and non-linear components that constitute the private key, the latter being defined over an extension field. We exploit these structures by proposing an algebraic attack which is practical on all DME parameters.
  title={Practical Attack on All Parameters of the DME Signature Scheme},
  author={Pierre Briaud and Maxime Bros and Ray Perlner and Daniel Smith-Tone},