A Compact Rank-Metric Signature Scheme from Double-Circulant LRPC Codes
组织者
演讲者
Babindamana Régis Freguin
时间
2026年09月23日 14:00 至 15:00
地点
A7-301
线上
Zoom 442 374 5045
(BIMSA)
摘要
Stern-Véron identification protocols give code-based signatures with small keys, provided the public generator matrix is random, which is what makes it costly to store. In this work, we show that the systematic generator matrix of a double-circulant LRPC code works just as well and costs a single circulant row. Combined with the rank-metric Véron protocol and the Fiat-Shamir transform, this gives a signature whose public key is that row plus one noisy codeword. The protocol never decodes, so the low-rank trapdoor stays hidden and security reduces to rank syndrome decoding for ideal codes, the assumption behind ROLLO and Durandal. We prove completeness, soundness and zero-knowledge, give size formulas, a worked example over $\mathbb{F}_{2^5}$ and a comparison with Wave, Durandal and rank-metric CVE.