CryptoDB
Computing 2-isogenies between Kummer lines
Authors: |
|
---|---|
Download: | |
Abstract: | We use theta groups to study $2$-isogenies between Kummer lines, with a particular focus on the Montgomery model. This allows us to recover known formulas, along with more efficient forms for translated isogenies, which require only $2S+2m_0$ for evaluation. We leverage these translated isogenies to build a hybrid ladder for scalar multiplication on Montgomery curves with rational $2$-torsion, which cost $3M+6S+2m_0$ per bit, compared to $5M+4S+1m_0$ for the standard Montgomery ladder. |
BibTeX
@article{cic-2024-34118, title={Computing 2-isogenies between Kummer lines}, journal={cic}, publisher={International Association for Cryptologic Research}, volume={1, Issue 1}, url={https://cic.iacr.org//p/1/1/26}, doi={10.62056/abvua69p1}, author={Damien Robert and Nicolas Sarkis}, year=2024 }