{"id":"https://openalex.org/W3096061848","doi":"https://doi.org/10.46586/tches.v2021.i1.451-472","title":"Concrete quantum cryptanalysis of binary elliptic curves","display_name":"Concrete quantum cryptanalysis of binary elliptic curves","publication_year":2020,"publication_date":"2020-12-03","ids":{"openalex":"https://openalex.org/W3096061848","doi":"https://doi.org/10.46586/tches.v2021.i1.451-472","mag":"3096061848"},"language":"en","primary_location":{"id":"doi:10.46586/tches.v2021.i1.451-472","is_oa":true,"landing_page_url":"https://doi.org/10.46586/tches.v2021.i1.451-472","pdf_url":"https://tches.iacr.org/index.php/TCHES/article/download/8741/8341","source":{"id":"https://openalex.org/S4210207404","display_name":"IACR Transactions on Cryptographic Hardware and Embedded Systems","issn_l":"2569-2925","issn":["2569-2925"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IACR Transactions on Cryptographic Hardware and Embedded Systems","raw_type":"journal-article"},"type":"article","indexed_in":["crossref","doaj"],"open_access":{"is_oa":true,"oa_status":"diamond","oa_url":"https://tches.iacr.org/index.php/TCHES/article/download/8741/8341","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5038666287","display_name":"Gustavo Banegas","orcid":"https://orcid.org/0000-0001-5502-2977"},"institutions":[{"id":"https://openalex.org/I66862912","display_name":"Chalmers University of Technology","ror":"https://ror.org/040wg7k59","country_code":"SE","type":"education","lineage":["https://openalex.org/I66862912"]}],"countries":["SE"],"is_corresponding":true,"raw_author_name":"Gustavo Banegas","raw_affiliation_strings":["Chalmers University of Technology, Gothenburg, Sweden"],"affiliations":[{"raw_affiliation_string":"Chalmers University of Technology, Gothenburg, Sweden","institution_ids":["https://openalex.org/I66862912"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5108114375","display_name":"Daniel J. Bernstein","orcid":null},"institutions":[{"id":"https://openalex.org/I904495901","display_name":"Ruhr University Bochum","ror":"https://ror.org/04tsk2644","country_code":"DE","type":"education","lineage":["https://openalex.org/I904495901"]},{"id":"https://openalex.org/I39422238","display_name":"University of Illinois Chicago","ror":"https://ror.org/02mpq6x41","country_code":"US","type":"education","lineage":["https://openalex.org/I39422238"]}],"countries":["DE","US"],"is_corresponding":false,"raw_author_name":"Daniel J. Bernstein","raw_affiliation_strings":["University of Illinois at Chicago, Chicago, USA; Ruhr University Bochum, Bochum, Germany","Ruhr University Bochum, Bochum, Germany","University of Illinois at Chicago, Chicago, USA"],"affiliations":[{"raw_affiliation_string":"University of Illinois at Chicago, Chicago, USA; Ruhr University Bochum, Bochum, Germany","institution_ids":["https://openalex.org/I904495901","https://openalex.org/I39422238"]},{"raw_affiliation_string":"Ruhr University Bochum, Bochum, Germany","institution_ids":["https://openalex.org/I904495901"]},{"raw_affiliation_string":"University of Illinois at Chicago, Chicago, USA","institution_ids":["https://openalex.org/I39422238"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5090265035","display_name":"Iggy van Hoof","orcid":null},"institutions":[{"id":"https://openalex.org/I83019370","display_name":"Eindhoven University of Technology","ror":"https://ror.org/02c2kyt77","country_code":"NL","type":"education","lineage":["https://openalex.org/I83019370"]}],"countries":["NL"],"is_corresponding":false,"raw_author_name":"Iggy Van Hoof","raw_affiliation_strings":["Eindhoven University of Technology, Eindhoven, The Netherlands"],"affiliations":[{"raw_affiliation_string":"Eindhoven University of Technology, Eindhoven, The Netherlands","institution_ids":["https://openalex.org/I83019370"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5016164029","display_name":"Tanja Lange","orcid":null},"institutions":[{"id":"https://openalex.org/I83019370","display_name":"Eindhoven University of Technology","ror":"https://ror.org/02c2kyt77","country_code":"NL","type":"education","lineage":["https://openalex.org/I83019370"]}],"countries":["NL"],"is_corresponding":false,"raw_author_name":"Tanja Lange","raw_affiliation_strings":["Eindhoven University of Technology, Eindhoven, The Netherlands"],"affiliations":[{"raw_affiliation_string":"Eindhoven University of Technology, Eindhoven, The Netherlands","institution_ids":["https://openalex.org/I83019370"]}]}],"institutions":[],"countries_distinct_count":4,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5038666287"],"corresponding_institution_ids":["https://openalex.org/I66862912"],"apc_list":null,"apc_paid":null,"fwci":3.1266,"has_fulltext":true,"cited_by_count":41,"citation_normalized_percentile":{"value":0.93275661,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":89,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"451","last_page":"472"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10682","display_name":"Quantum Computing Algorithms and Architecture","score":0.9994000196456909,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10682","display_name":"Quantum Computing Algorithms and Architecture","score":0.9994000196456909,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10237","display_name":"Cryptography and Data Security","score":0.9975000023841858,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11130","display_name":"Coding theory and cryptography","score":0.9973000288009644,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/discrete-logarithm","display_name":"Discrete logarithm","score":0.6836474537849426},{"id":"https://openalex.org/keywords/scalar-multiplication","display_name":"Scalar multiplication","score":0.6327248215675354},{"id":"https://openalex.org/keywords/toffoli-gate","display_name":"Toffoli gate","score":0.6042718887329102},{"id":"https://openalex.org/keywords/elliptic-curve","display_name":"Elliptic curve","score":0.5864354372024536},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.5477806329727173},{"id":"https://openalex.org/keywords/quantum-computer","display_name":"Quantum computer","score":0.5433245301246643},{"id":"https://openalex.org/keywords/elliptic-curve-point-multiplication","display_name":"Elliptic curve point multiplication","score":0.5357676148414612},{"id":"https://openalex.org/keywords/counting-points-on-elliptic-curves","display_name":"Counting points on elliptic curves","score":0.5003206729888916},{"id":"https://openalex.org/keywords/qubit","display_name":"Qubit","score":0.4567055404186249},{"id":"https://openalex.org/keywords/discrete-mathematics","display_name":"Discrete mathematics","score":0.4317905604839325},{"id":"https://openalex.org/keywords/quantum-fourier-transform","display_name":"Quantum Fourier transform","score":0.4289971590042114},{"id":"https://openalex.org/keywords/controlled-not-gate","display_name":"Controlled NOT gate","score":0.42275968194007874},{"id":"https://openalex.org/keywords/schoofs-algorithm","display_name":"Schoof's algorithm","score":0.3989601731300354},{"id":"https://openalex.org/keywords/arithmetic","display_name":"Arithmetic","score":0.3775769770145416},{"id":"https://openalex.org/keywords/quantum-gate","display_name":"Quantum gate","score":0.3423735499382019},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.3223368227481842},{"id":"https://openalex.org/keywords/quantum","display_name":"Quantum","score":0.2563837468624115},{"id":"https://openalex.org/keywords/public-key-cryptography","display_name":"Public-key cryptography","score":0.17160210013389587},{"id":"https://openalex.org/keywords/quantum-mechanics","display_name":"Quantum mechanics","score":0.16628095507621765},{"id":"https://openalex.org/keywords/pure-mathematics","display_name":"Pure mathematics","score":0.13698971271514893},{"id":"https://openalex.org/keywords/physics","display_name":"Physics","score":0.12606686353683472},{"id":"https://openalex.org/keywords/encryption","display_name":"Encryption","score":0.08213493227958679}],"concepts":[{"id":"https://openalex.org/C173259116","wikidata":"https://www.wikidata.org/wiki/Q864003","display_name":"Discrete logarithm","level":4,"score":0.6836474537849426},{"id":"https://openalex.org/C171182647","wikidata":"https://www.wikidata.org/wiki/Q126736","display_name":"Scalar multiplication","level":3,"score":0.6327248215675354},{"id":"https://openalex.org/C142465778","wikidata":"https://www.wikidata.org/wiki/Q2502619","display_name":"Toffoli gate","level":5,"score":0.6042718887329102},{"id":"https://openalex.org/C179603306","wikidata":"https://www.wikidata.org/wiki/Q268493","display_name":"Elliptic curve","level":2,"score":0.5864354372024536},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.5477806329727173},{"id":"https://openalex.org/C58053490","wikidata":"https://www.wikidata.org/wiki/Q176555","display_name":"Quantum computer","level":3,"score":0.5433245301246643},{"id":"https://openalex.org/C117121985","wikidata":"https://www.wikidata.org/wiki/Q78380999","display_name":"Elliptic curve point multiplication","level":3,"score":0.5357676148414612},{"id":"https://openalex.org/C68782407","wikidata":"https://www.wikidata.org/wiki/Q5177153","display_name":"Counting points on elliptic curves","level":5,"score":0.5003206729888916},{"id":"https://openalex.org/C203087015","wikidata":"https://www.wikidata.org/wiki/Q378201","display_name":"Qubit","level":3,"score":0.4567055404186249},{"id":"https://openalex.org/C118615104","wikidata":"https://www.wikidata.org/wiki/Q121416","display_name":"Discrete mathematics","level":1,"score":0.4317905604839325},{"id":"https://openalex.org/C59500034","wikidata":"https://www.wikidata.org/wiki/Q1464944","display_name":"Quantum Fourier transform","level":5,"score":0.4289971590042114},{"id":"https://openalex.org/C182953411","wikidata":"https://www.wikidata.org/wiki/Q917713","display_name":"Controlled NOT gate","level":5,"score":0.42275968194007874},{"id":"https://openalex.org/C121444067","wikidata":"https://www.wikidata.org/wiki/Q2835817","display_name":"Schoof's algorithm","level":4,"score":0.3989601731300354},{"id":"https://openalex.org/C94375191","wikidata":"https://www.wikidata.org/wiki/Q11205","display_name":"Arithmetic","level":1,"score":0.3775769770145416},{"id":"https://openalex.org/C58849907","wikidata":"https://www.wikidata.org/wiki/Q2118982","display_name":"Quantum gate","level":4,"score":0.3423735499382019},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.3223368227481842},{"id":"https://openalex.org/C84114770","wikidata":"https://www.wikidata.org/wiki/Q46344","display_name":"Quantum","level":2,"score":0.2563837468624115},{"id":"https://openalex.org/C203062551","wikidata":"https://www.wikidata.org/wiki/Q201339","display_name":"Public-key cryptography","level":3,"score":0.17160210013389587},{"id":"https://openalex.org/C62520636","wikidata":"https://www.wikidata.org/wiki/Q944","display_name":"Quantum mechanics","level":1,"score":0.16628095507621765},{"id":"https://openalex.org/C202444582","wikidata":"https://www.wikidata.org/wiki/Q837863","display_name":"Pure mathematics","level":1,"score":0.13698971271514893},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.12606686353683472},{"id":"https://openalex.org/C148730421","wikidata":"https://www.wikidata.org/wiki/Q141090","display_name":"Encryption","level":2,"score":0.08213493227958679},{"id":"https://openalex.org/C197875053","wikidata":"https://www.wikidata.org/wiki/Q7269266","display_name":"Quarter period","level":3,"score":0.0},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.0}],"mesh":[],"locations_count":6,"locations":[{"id":"doi:10.46586/tches.v2021.i1.451-472","is_oa":true,"landing_page_url":"https://doi.org/10.46586/tches.v2021.i1.451-472","pdf_url":"https://tches.iacr.org/index.php/TCHES/article/download/8741/8341","source":{"id":"https://openalex.org/S4210207404","display_name":"IACR Transactions on Cryptographic Hardware and Embedded Systems","issn_l":"2569-2925","issn":["2569-2925"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IACR Transactions on Cryptographic Hardware and Embedded Systems","raw_type":"journal-article"},{"id":"pmh:oai:pure.tue.nl:openaire/dcc81b3e-ef7b-404e-8c01-287327651d4e","is_oa":true,"landing_page_url":"https://research.tue.nl/en/publications/dcc81b3e-ef7b-404e-8c01-287327651d4e","pdf_url":null,"source":{"id":"https://openalex.org/S4406922641","display_name":"TU/e Research Portal","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":"other-oa","license_id":"https://openalex.org/licenses/other-oa","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Souza Banegas, G, Bernstein, D J, van Hoof, I & Lange, T 2021, 'Concrete quantum cryptanalysis of binary elliptic curves', IACR Transactions on Cryptographic Hardware and Embedded Systems, vol. 2021, no. 1, pp. 451-472. https://doi.org/10.46586/tches.v2021.i1.451-472","raw_type":"info:eu-repo/semantics/publishedVersion"},{"id":"pmh:oai:doaj.org/article:79191575cd204a8eb5a7a1fbde0c70d2","is_oa":true,"landing_page_url":"https://doaj.org/article/79191575cd204a8eb5a7a1fbde0c70d2","pdf_url":null,"source":{"id":"https://openalex.org/S112646816","display_name":"SHILAP Revista de lepidopterolog\u00eda","issn_l":"0300-5267","issn":["0300-5267","2340-4078"],"is_oa":true,"is_in_doaj":true,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"journal"},"license":"cc-by-sa","license_id":"https://openalex.org/licenses/cc-by-sa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Transactions on Cryptographic Hardware and Embedded Systems, Vol 2021, Iss 1 (2020)","raw_type":"article"},{"id":"pmh:oai:doaj.org/article:865c82d01e364bd994a7fa258ac0e57f","is_oa":true,"landing_page_url":"https://doaj.org/article/865c82d01e364bd994a7fa258ac0e57f","pdf_url":null,"source":{"id":"https://openalex.org/S112646816","display_name":"SHILAP Revista de lepidopterolog\u00eda","issn_l":"0300-5267","issn":["0300-5267","2340-4078"],"is_oa":true,"is_in_doaj":true,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"journal"},"license":"cc-by-sa","license_id":"https://openalex.org/licenses/cc-by-sa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Transactions on Cryptographic Hardware and Embedded Systems, Vol 2021, Iss 1 (2020)","raw_type":"article"},{"id":"pmh:oai:research.chalmers.se:527005","is_oa":false,"landing_page_url":"https://research.chalmers.se/en/publication/527005","pdf_url":null,"source":{"id":"https://openalex.org/S4306402469","display_name":"Chalmers Research (Chalmers University of Technology)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I66862912","host_organization_name":"Chalmers University of Technology","host_organization_lineage":["https://openalex.org/I66862912"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":""},{"id":"pmh:tue:oai:pure.tue.nl:publications/dcc81b3e-ef7b-404e-8c01-287327651d4e","is_oa":true,"landing_page_url":"https://research.tue.nl/nl/publications/dcc81b3e-ef7b-404e-8c01-287327651d4e","pdf_url":null,"source":{"id":"https://openalex.org/S4306401843","display_name":"Data Archiving and Networked Services (DANS)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I1322597698","host_organization_name":"Royal Netherlands Academy of Arts and Sciences","host_organization_lineage":["https://openalex.org/I1322597698"],"host_organization_lineage_names":[],"type":"repository"},"license":"other-oa","license_id":"https://openalex.org/licenses/other-oa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"IACR Transactions on Cryptographic Hardware and Embedded Systems, 2021(1), 451 - 472. Ruhr-University Bochum","raw_type":"info:eu-repo/semantics/article"}],"best_oa_location":{"id":"doi:10.46586/tches.v2021.i1.451-472","is_oa":true,"landing_page_url":"https://doi.org/10.46586/tches.v2021.i1.451-472","pdf_url":"https://tches.iacr.org/index.php/TCHES/article/download/8741/8341","source":{"id":"https://openalex.org/S4210207404","display_name":"IACR Transactions on Cryptographic Hardware and Embedded Systems","issn_l":"2569-2925","issn":["2569-2925"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IACR Transactions on Cryptographic Hardware and Embedded Systems","raw_type":"journal-article"},"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G18682879","display_name":null,"funder_award_id":"390781972","funder_id":"https://openalex.org/F4320320879","funder_display_name":"Deutsche Forschungsgemeinschaft"},{"id":"https://openalex.org/G3702002941","display_name":null,"funder_award_id":"EXC 2092 CASA 390781972","funder_id":"https://openalex.org/F4320320879","funder_display_name":"Deutsche Forschungsgemeinschaft"},{"id":"https://openalex.org/G486964816","display_name":null,"funder_award_id":"project 6","funder_id":"https://openalex.org/F4320321800","funder_display_name":"Nederlandse Organisatie voor Wetenschappelijk Onderzoek"},{"id":"https://openalex.org/G5717916917","display_name":null,"funder_award_id":"39078197","funder_id":"https://openalex.org/F4320320879","funder_display_name":"Deutsche Forschungsgemeinschaft"},{"id":"https://openalex.org/G5921281487","display_name":null,"funder_award_id":"number","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G762232396","display_name":null,"funder_award_id":"Project","funder_id":"https://openalex.org/F4320320879","funder_display_name":"Deutsche Forschungsgemeinschaft"},{"id":"https://openalex.org/G848032724","display_name":null,"funder_award_id":"Science","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G8800692611","display_name":"Collaborative Research: Short Vectors in Lattices","funder_award_id":"1913167","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"}],"funders":[{"id":"https://openalex.org/F4320306076","display_name":"National Science Foundation","ror":"https://ror.org/021nxhr62"},{"id":"https://openalex.org/F4320320879","display_name":"Deutsche Forschungsgemeinschaft","ror":"https://ror.org/018mejw64"},{"id":"https://openalex.org/F4320321041","display_name":"Academia Sinica","ror":"https://ror.org/05bxb3784"},{"id":"https://openalex.org/F4320321651","display_name":"Technische Universiteit Eindhoven","ror":"https://ror.org/02c2kyt77"},{"id":"https://openalex.org/F4320321800","display_name":"Nederlandse Organisatie voor Wetenschappelijk Onderzoek","ror":"https://ror.org/04jsz6e67"},{"id":"https://openalex.org/F4320334164","display_name":"Simons Institute for the Theory of Computing, University of California Berkeley","ror":null},{"id":"https://openalex.org/F4320338463","display_name":"CHIST-ERA","ror":"https://ror.org/00rbzpz17"}],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W3096061848.pdf","grobid_xml":"https://content.openalex.org/works/W3096061848.grobid-xml"},"referenced_works_count":21,"referenced_works":["https://openalex.org/W1592482282","https://openalex.org/W1967037487","https://openalex.org/W2007751412","https://openalex.org/W2061073612","https://openalex.org/W2135205181","https://openalex.org/W2152655777","https://openalex.org/W2168676717","https://openalex.org/W2625278983","https://openalex.org/W2801305581","https://openalex.org/W2949288242","https://openalex.org/W2951701972","https://openalex.org/W2951773754","https://openalex.org/W3002177702","https://openalex.org/W3022840541","https://openalex.org/W3023478445","https://openalex.org/W3096061848","https://openalex.org/W3111297213","https://openalex.org/W3128330472","https://openalex.org/W3154892646","https://openalex.org/W4288280616","https://openalex.org/W4288372784"],"related_works":["https://openalex.org/W1250648069","https://openalex.org/W2951941521","https://openalex.org/W1630276295","https://openalex.org/W3022132827","https://openalex.org/W3186276893","https://openalex.org/W3165240604","https://openalex.org/W2147359105","https://openalex.org/W4225162857","https://openalex.org/W2751254717","https://openalex.org/W2138618971"],"abstract_inverted_index":{"This":[0],"paper":[1,83,100],"analyzes":[2],"and":[3,22,122],"optimizes":[4],"quantum":[5,38],"circuits":[6,17],"for":[7,18,144,152],"computing":[8],"discrete":[9],"logarithms":[10],"on":[11],"binary":[12],"elliptic":[13,74,148],"curves,":[14],"including":[15],"reversible":[16],"fixed-base-point":[19],"scalar":[20,120,129],"multiplication":[21],"the":[23,34,37,41,52,66,85,96,102],"full":[24],"stack":[25],"of":[26,36,43,68,79,87,104,133,147],"relevant":[27],"subroutines.":[28],"The":[29,61,131],"main":[30,53],"optimization":[31,63],"target":[32,64],"is":[33,65,136],"size":[35],"computer,":[39],"i.e.,":[40],"number":[42,67,86,103,132],"logical":[44,69],"qubits":[45,88],"required,":[46],"as":[47],"this":[48,82,99],"appears":[49],"to":[50,55,89,107],"be":[51],"obstacle":[54],"implementing":[56],"Shor\u2019s":[57],"polynomial-time":[58],"discrete-logarithm":[59],"algorithm.":[60],"secondary":[62],"Toffoli":[70,105],"gates.":[71],"For":[72],"an":[73],"curve":[75],"over":[76],"a":[77,123],"field":[78],"2n":[80],"elements,":[81],"reduces":[84,101],"7n":[90],"+":[91,93,109,111,114,116],"\u230alog2(n)\u230b":[92],"9.":[94],"At":[95],"same":[97],"time":[98],"gates":[106,135],"48n3":[108],"8nlog2(3)+1":[110],"352n2":[112],"log2(n)":[113],"512n2":[115],"O(nlog2(3))":[117],"with":[118,127],"double-and-add":[119],"multiplication,":[121],"logarithmic":[124],"factor":[125],"smaller":[126],"fixed-window":[128],"multiplication.":[130],"CNOT":[134],"also":[137],"O(n3).":[138],"Exact":[139],"gate":[140],"counts":[141],"are":[142],"given":[143],"various":[145],"sizes":[146],"curves":[149],"currently":[150],"used":[151],"cryptography.":[153]},"counts_by_year":[{"year":2025,"cited_by_count":9},{"year":2024,"cited_by_count":9},{"year":2023,"cited_by_count":12},{"year":2022,"cited_by_count":4},{"year":2021,"cited_by_count":6},{"year":2020,"cited_by_count":1}],"updated_date":"2026-04-10T15:06:20.359241","created_date":"2025-10-10T00:00:00"}
