@inproceedings{a9db15a1fc2a418f83a0e714223b1607,
title = "HILA5 pindakaas: On the CCA security of lattice-based encryption with error correction",
abstract = "We show that the NISTPQC submission HILA5 is not secure against chosen-ciphertext attacks. Specifically, we demonstrate a key-recovery attack on HILA5 using an active attack on reused keys. The attack works around the error correction in HILA5. The attack applies to the HILA5 key-encapsulation mechanism (KEM), and also to the public-key encryption mechanism (PKE) obtained by NIST{\textquoteright}s procedure for combining the KEM with authenticated encryption. This contradicts the most natural interpretation of the IND-CCA security claim for HILA5.",
keywords = "KEM, Post-quantum cryptography, RLWE, Reaction attack",
author = "Bernstein, {Daniel J.} and {Groot Bruinderink}, Leon and Tanja Lange and Lorenz Panny",
note = "Publisher Copyright: {\textcopyright} Springer International Publishing AG, part of Springer Nature 2018.; 10th International Conference on the Theory and Application of Cryptographic Techniques in Africa, AFRICACRYPT 2018 ; Conference date: 07-05-2018 Through 09-05-2018",
year = "2018",
doi = "10.1007/978-3-319-89339-6_12",
language = "English",
isbn = "9783319893389",
series = "Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)",
publisher = "Springer Verlag",
pages = "203--216",
editor = "Abderrahmane Nitaj and Tajjeeddine Rachidi and Antoine Joux",
booktitle = "Progress in Cryptology - AFRICACRYPT 2018 - 10th International Conference on Cryptology in Africa, Proceedings",
}