International Association for Cryptologic Research

International Association
for Cryptologic Research

CryptoDB

Radical Vélu Isogeny Formulae

Authors:
Thomas Decru , ULB
Download:
DOI: 10.1007/978-3-031-68388-6_5 (login may be required)
Search ePrint
Search Google
Presentation: Slides
Conference: CRYPTO 2024
Abstract: We provide explicit radical N -isogeny formulae for all odd integers N . The formulae are compact closed-form expressions which require one Nth root computation and O(N) basic field operations. The formulae are highly efficient to compute a long chain of N -isogenies, and are extremely beneficial for speeding up certain cryptographic protocols such as CSIDH. Unfortunately, the formulae are conjectured, but we provide ample supporting evidence which strongly suggests their correctness. For CSIDH-512, we notice an additional 35% speed-up when using radical isogenies up to N = 199, compared to the work by Castryck, Decru, Houben and Vercauteren, which uses radical isogenies up to N = 19 only. The addition of our radical isogenies also speeds up the computation of larger class group actions in a comparable fashion.
BibTeX
@inproceedings{crypto-2024-34247,
  title={Radical Vélu Isogeny Formulae},
  publisher={Springer-Verlag},
  doi={10.1007/978-3-031-68388-6_5},
  author={Thomas Decru},
  year=2024
}