Advances in Cryptology — EUROCRYPT 2000

Volume 1807 of the series Lecture Notes in Computer Science pp 19-34


An Algorithm for Solving the Discrete Log Problem on Hyperelliptic Curves

  • Pierrick GaudryAffiliated withLIX, École Polytechnique


We present an index-calculus algorithm for the computation of discrete logarithms in the Jacobian of hyperelliptic curves defined over finite fields. The complexity predicts that it is faster than the Rho method for genus greater than 4. To demonstrate the efficiency of our approach, we describe our breaking of a cryptosystem based on a curve of genus 6 recently proposed by Koblitz.