IACR News item: 27 February 2024
Pierre Briaud, Maxime Bros, Ray Perlner, Daniel Smith-Tone
ePrint Report
DME is a multivariate scheme submitted to the call for additional signatures recently launched by NIST. Its performance is one of the best among all the candidates. The public key is constructed from the alternation of very structured linear and non-linear components that constitute the private key, the latter being defined over an extension field. We exploit these structures by proposing an algebraic attack which is practical on all DME parameters.
Additional news items may be found on the IACR news page.