{"id":"https://openalex.org/W7160255885","doi":"https://doi.org/10.62056/ab0l5w4e-","title":"A Practical Neighborhood Search Attack on Oracle MLWE","display_name":"A Practical Neighborhood Search Attack on Oracle MLWE","publication_year":2026,"publication_date":"2026-05-04","ids":{"openalex":"https://openalex.org/W7160255885","doi":"https://doi.org/10.62056/ab0l5w4e-"},"language":"en","primary_location":{"id":"doi:10.62056/ab0l5w4e-","is_oa":true,"landing_page_url":"https://doi.org/10.62056/ab0l5w4e-","pdf_url":"https://cic.iacr.org/p/3/1/14/pdf","source":{"id":"https://openalex.org/S4394708374","display_name":"IACR Communications in Cryptology","issn_l":"3006-5496","issn":["3006-5496"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320989","host_organization_name":"International Association for Cryptologic Research","host_organization_lineage":["https://openalex.org/P4310320989"],"host_organization_lineage_names":["International Association for Cryptologic Research"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IACR Communications in Cryptology","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"hybrid","oa_url":"https://cic.iacr.org/p/3/1/14/pdf","any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5012161872","display_name":"H Wang","orcid":null},"institutions":[{"id":"https://openalex.org/I889458895","display_name":"University of Hong Kong","ror":"https://ror.org/02zhqgq86","country_code":"HK","type":"education","lineage":["https://openalex.org/I889458895"]}],"countries":["HK"],"is_corresponding":false,"raw_author_name":"Hongxiao Wang","raw_affiliation_strings":["The University of Hong Kong"],"raw_orcid":"https://orcid.org/0009-0005-2983-7239","affiliations":[{"raw_affiliation_string":"The University of Hong Kong","institution_ids":["https://openalex.org/I889458895"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5135360434","display_name":"Muhammed Esgin","orcid":"https://orcid.org/0000-0003-1650-3748"},"institutions":[{"id":"https://openalex.org/I2801239119","display_name":"Australian Regenerative Medicine Institute","ror":"https://ror.org/02qa5kg76","country_code":"AU","type":"facility","lineage":["https://openalex.org/I2801037857","https://openalex.org/I2801239119","https://openalex.org/I56590836"]},{"id":"https://openalex.org/I56590836","display_name":"Monash University","ror":"https://ror.org/02bfwt286","country_code":"AU","type":"education","lineage":["https://openalex.org/I56590836"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Muhammed Esgin","raw_affiliation_strings":["Monash University"],"raw_orcid":"https://orcid.org/0000-0003-1650-3748","affiliations":[{"raw_affiliation_string":"Monash University","institution_ids":["https://openalex.org/I2801239119","https://openalex.org/I56590836"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5135371533","display_name":"Ron Steinfeld","orcid":"https://orcid.org/0000-0003-1745-4183"},"institutions":[{"id":"https://openalex.org/I2801239119","display_name":"Australian Regenerative Medicine Institute","ror":"https://ror.org/02qa5kg76","country_code":"AU","type":"facility","lineage":["https://openalex.org/I2801037857","https://openalex.org/I2801239119","https://openalex.org/I56590836"]},{"id":"https://openalex.org/I56590836","display_name":"Monash University","ror":"https://ror.org/02bfwt286","country_code":"AU","type":"education","lineage":["https://openalex.org/I56590836"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Ron Steinfeld","raw_affiliation_strings":["Monash University"],"raw_orcid":"https://orcid.org/0000-0003-1745-4183","affiliations":[{"raw_affiliation_string":"Monash University","institution_ids":["https://openalex.org/I2801239119","https://openalex.org/I56590836"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5135325154","display_name":"Markku-Juhani Saarinen","orcid":"https://orcid.org/0000-0002-2555-235X"},"institutions":[{"id":"https://openalex.org/I166825849","display_name":"Tampere University","ror":"https://ror.org/033003e23","country_code":"FI","type":"education","lineage":["https://openalex.org/I166825849"]}],"countries":["FI"],"is_corresponding":false,"raw_author_name":"Markku-Juhani Saarinen","raw_affiliation_strings":["Tampere University"],"raw_orcid":"https://orcid.org/0000-0002-2555-235X","affiliations":[{"raw_affiliation_string":"Tampere University","institution_ids":["https://openalex.org/I166825849"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5135309802","display_name":"Siu-Ming Yiu","orcid":"https://orcid.org/0000-0002-3975-8500"},"institutions":[{"id":"https://openalex.org/I889458895","display_name":"University of Hong Kong","ror":"https://ror.org/02zhqgq86","country_code":"HK","type":"education","lineage":["https://openalex.org/I889458895"]}],"countries":["HK"],"is_corresponding":false,"raw_author_name":"Siu-Ming Yiu","raw_affiliation_strings":["The University of Hong Kong"],"raw_orcid":"https://orcid.org/0000-0002-3975-8500","affiliations":[{"raw_affiliation_string":"The University of Hong Kong","institution_ids":["https://openalex.org/I889458895"]}]}],"institutions":[],"countries_distinct_count":3,"institutions_distinct_count":5,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":true,"cited_by_count":0,"citation_normalized_percentile":{"value":0.68665847,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":"3","issue":"1","first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10951","display_name":"Cryptographic Implementations and Security","score":0.6256999969482422,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10951","display_name":"Cryptographic Implementations and Security","score":0.6256999969482422,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10237","display_name":"Cryptography and Data Security","score":0.3244999945163727,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12122","display_name":"Physical Unclonable Functions (PUFs) and Hardware Security","score":0.011500000022351742,"subfield":{"id":"https://openalex.org/subfields/1708","display_name":"Hardware and Architecture"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/oracle","display_name":"Oracle","score":0.7972000241279602},{"id":"https://openalex.org/keywords/random-oracle","display_name":"Random oracle","score":0.5512999892234802},{"id":"https://openalex.org/keywords/exploit","display_name":"Exploit","score":0.511900007724762},{"id":"https://openalex.org/keywords/adversary","display_name":"Adversary","score":0.46790000796318054},{"id":"https://openalex.org/keywords/bounded-function","display_name":"Bounded function","score":0.45350000262260437},{"id":"https://openalex.org/keywords/dimension","display_name":"Dimension (graph theory)","score":0.44359999895095825},{"id":"https://openalex.org/keywords/rounding","display_name":"Rounding","score":0.4226999878883362}],"concepts":[{"id":"https://openalex.org/C55166926","wikidata":"https://www.wikidata.org/wiki/Q2892946","display_name":"Oracle","level":2,"score":0.7972000241279602},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.659500002861023},{"id":"https://openalex.org/C94284585","wikidata":"https://www.wikidata.org/wiki/Q228184","display_name":"Random oracle","level":4,"score":0.5512999892234802},{"id":"https://openalex.org/C165696696","wikidata":"https://www.wikidata.org/wiki/Q11287","display_name":"Exploit","level":2,"score":0.511900007724762},{"id":"https://openalex.org/C41065033","wikidata":"https://www.wikidata.org/wiki/Q2825412","display_name":"Adversary","level":2,"score":0.46790000796318054},{"id":"https://openalex.org/C34388435","wikidata":"https://www.wikidata.org/wiki/Q2267362","display_name":"Bounded function","level":2,"score":0.45350000262260437},{"id":"https://openalex.org/C33676613","wikidata":"https://www.wikidata.org/wiki/Q13415176","display_name":"Dimension (graph theory)","level":2,"score":0.44359999895095825},{"id":"https://openalex.org/C136625980","wikidata":"https://www.wikidata.org/wiki/Q663208","display_name":"Rounding","level":2,"score":0.4226999878883362},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.4133000075817108},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.4092999994754791},{"id":"https://openalex.org/C2776401178","wikidata":"https://www.wikidata.org/wiki/Q12050496","display_name":"Feature (linguistics)","level":2,"score":0.3763999938964844},{"id":"https://openalex.org/C2780428219","wikidata":"https://www.wikidata.org/wiki/Q16952335","display_name":"Cover (algebra)","level":2,"score":0.34299999475479126},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.3375999927520752},{"id":"https://openalex.org/C41608201","wikidata":"https://www.wikidata.org/wiki/Q980509","display_name":"Embedding","level":2,"score":0.2953999936580658},{"id":"https://openalex.org/C96865113","wikidata":"https://www.wikidata.org/wiki/Q2946816","display_name":"Certificate","level":2,"score":0.28760001063346863},{"id":"https://openalex.org/C2777210771","wikidata":"https://www.wikidata.org/wiki/Q4927124","display_name":"Block (permutation group theory)","level":2,"score":0.27390000224113464},{"id":"https://openalex.org/C2779696439","wikidata":"https://www.wikidata.org/wiki/Q7512811","display_name":"Signature (topology)","level":2,"score":0.2648000121116638},{"id":"https://openalex.org/C178489894","wikidata":"https://www.wikidata.org/wiki/Q8789","display_name":"Cryptography","level":2,"score":0.26440000534057617}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.62056/ab0l5w4e-","is_oa":true,"landing_page_url":"https://doi.org/10.62056/ab0l5w4e-","pdf_url":"https://cic.iacr.org/p/3/1/14/pdf","source":{"id":"https://openalex.org/S4394708374","display_name":"IACR Communications in Cryptology","issn_l":"3006-5496","issn":["3006-5496"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320989","host_organization_name":"International Association for Cryptologic Research","host_organization_lineage":["https://openalex.org/P4310320989"],"host_organization_lineage_names":["International Association for Cryptologic Research"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IACR Communications in Cryptology","raw_type":"journal-article"}],"best_oa_location":{"id":"doi:10.62056/ab0l5w4e-","is_oa":true,"landing_page_url":"https://doi.org/10.62056/ab0l5w4e-","pdf_url":"https://cic.iacr.org/p/3/1/14/pdf","source":{"id":"https://openalex.org/S4394708374","display_name":"IACR Communications in Cryptology","issn_l":"3006-5496","issn":["3006-5496"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320989","host_organization_name":"International Association for Cryptologic Research","host_organization_lineage":["https://openalex.org/P4310320989"],"host_organization_lineage_names":["International Association for Cryptologic Research"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IACR Communications in Cryptology","raw_type":"journal-article"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":true,"pdf":true},"content_urls":{"pdf":"https://content.openalex.org/works/W7160255885.pdf","grobid_xml":"https://content.openalex.org/works/W7160255885.grobid-xml"},"referenced_works_count":17,"referenced_works":["https://openalex.org/W157865340","https://openalex.org/W1574314127","https://openalex.org/W1868922675","https://openalex.org/W2002779219","https://openalex.org/W2098443120","https://openalex.org/W2395093458","https://openalex.org/W3090938627","https://openalex.org/W4308641887","https://openalex.org/W4365806595","https://openalex.org/W4365807985","https://openalex.org/W4385654365","https://openalex.org/W4388858412","https://openalex.org/W4389620384","https://openalex.org/W4395093952","https://openalex.org/W4401666510","https://openalex.org/W4414869473","https://openalex.org/W7109751162"],"related_works":[],"abstract_inverted_index":{"The":[0],"Oracle":[1,47,68,130],"Module":[2],"Learning":[3],"with":[4,88],"Errors":[5],"(Oracle":[6],"MLWE)":[7],"assumption,":[8],"recently":[9],"introduced":[10],"by":[11,21],"Liu":[12,134],"et":[13,135],"al.":[14,136],"(Asiacrypt":[15,137],"2025),":[16,138],"strengthens":[17],"standard":[18,185],"(Module)":[19],"LWE":[20],"allowing":[22],"masked":[23],"linear":[24],"leakages":[25],"of":[26,41,113,122,133,171],"the":[27,39,89,114,120,129,148,155,188],"secret":[28],"under":[29,187],"an":[30,165],"adversarially-chosen":[31,80],"challenge":[32],"matrix.":[33],"This":[34],"feature":[35],"is":[36],"used":[37],"for":[38,97],"construction":[40],"new":[42],"efficient":[43],"primitives":[44],"such":[45],"as":[46],"MLWE-based":[48,131],"multi-message":[49],"multi-recipient":[50],"KEM/PKE":[51],"(mmKEM/mmPKE)":[52],"without":[53],"requiring":[54],"public-key":[55],"well-formedness":[56],"proofs.":[57],"In":[58],"this":[59],"work,":[60],"we":[61,71,125],"present":[62],"a":[63,73,107,168,180,184,196],"practical":[64],"cryptanalytic":[65],"attack":[66,78,156],"on":[67,183],"MLWE,":[69],"which":[70,191],"call":[72],"neighborhood":[74],"search":[75],"attack.":[76],"Our":[77],"exploits":[79],"matrices":[81],"(or":[82],"maliciously":[83],"generated":[84],"public":[85],"keys),":[86],"together":[87],"small":[90],"ring":[91],"dimension":[92],"and":[93,159],"small-norm":[94],"secrets":[95],"required":[96],"correctness,":[98],"showing":[99,163],"that":[100,140,164],"rounding":[101],"errors":[102],"can":[103,173],"be":[104],"recovered":[105],"via":[106],"bounded":[108],"search,":[109],"leading":[110],"to":[111,194],"recovery":[112],"underlying":[115],"MLWE":[116],"secret.":[117],"To":[118],"demonstrate":[119],"effectiveness":[121],"our":[123],"attack,":[124],"apply":[126],"it":[127],"against":[128],"mmKEM":[132],"proving":[139],"its":[141],"recommended":[142],"parameter":[143],"sets":[144],"do":[145],"not":[146],"achieve":[147,195],"claimed":[149,193],"security":[150,198],"level.":[151,199],"We":[152],"further":[153],"implement":[154],"in":[157],"SageMath":[158],"report":[160],"concrete":[161],"timings,":[162],"adversary":[166],"controlling":[167],"moderate":[169],"number":[170],"recipients":[172],"recover":[174],"other":[175],"recipients'":[176],"encapsulated":[177],"keys":[178],"within":[179],"few":[181],"seconds":[182],"PC":[186],"proposed":[189],"parameters,":[190],"were":[192],"128-bit":[197]},"counts_by_year":[],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2026-05-06T00:00:00"}
