Distinguishing Attack on the NTRUCipher Encryption Scheme


A distinguishing attack on the NTRUCipher symmetric encryption scheme defined over the residue ring modulo a cyclotomic polynomial over a finite field of prime order is proposed. The attack is based on the existence of a homomorphism from this ring into the specified field and can be quite effective under sufficiently general conditions.

  • lattice-based cryptography
  • symmetric encryption scheme
  • distinguishing attack
  • cyclotomic polynomial
  • NTRUCipher