IACR News item: 26 January 2024
Peigen Li, Jintai Ding
ePrint Report
SNOVA is a variant of a UOV-type signature scheme over a noncommutative ring. In this article, we demonstrate that certain
parameters provided by authors in SNOVA fail to meet the NIST security level, and the complexities are lower than those claimed by SNOVA.
Additional news items may be found on the IACR news page.