2 ms·
> A key security assumption behind Classic McEliece, a public-key encryption system considered to resist quantum computers, has been undermined Classic McEliec
by wahern 2mo ago
> A key security assumption behind Classic McEliece, a public-key encryption system considered to resist quantum computers, has been undermined
Classic McEliece was explicitly designed not to rely on distinguishing resistance for security. See this rebuttal of an earlier distinguishing attack: https://classic.mceliece.org/mceliece-610-20260623.pdf https://classic.mceliece.org/mceliece-610-20260623.pdf
See also https://postquantum.com/security-pqc/mceliece-quasipolynomial-distinguisher/ https://postquantum.com/security-pqc/mceliece-quasipolynomia... ("Public-key pseudorandomness is a property other people assumed, not one Classic McEliece promised. A distinguisher running in 2114 operations violates no claim the team has ever made, and anyone reporting this as a break should say which claim they think fell.")