International Association for Cryptologic Research

International Association
for Cryptologic Research

IACR News item: 30 August 2013

Takakazu Satoh
ePrint Report ePrint Report
The hyperelliptic curve Ate pairing provides an efficient way to compute a

bilinear pairing on the Jacobian variety of a hyperelliptic curve.

We prove that, for supersingular elliptic curves with embedding degree

two, square of the Ate pairing is nothing but the Weil pairing.

Using the formula, we develop an X-coordinate only pairing inversion method.

However, the algorithm is still infeasible for cryptographic size problems.

Expand

Additional news items may be found on the IACR news page.