Cryptanalysis of a Pseudorandom Generator Based on Braid Groups [chapter]

Rosario Gennaro, Daniele Micciancio
2002 Lecture Notes in Computer Science  
We show that the decisional version of the Ko-Lee assumption for braid groups put forward by Lee, Lee and Hahn at Crypto 2001 is false, by giving an efficient algorithm that solves (with high probability) the corresponding decisional problem. Our attack immediately applies to the pseudo-random generator and synthesizer proposed by the same authors based on the decisional Ko-Lee assumption, and shows that neither of them is cryptographically secure.
doi:10.1007/3-540-46035-7_1 fatcat:4fysn7e3sbbqnnxri6g4zcef3u