|
|
|
|
|
by less_less
488 days ago
|
|
Yeah, SVP is NP-complete for certain parameters. But lattice cryptography uses other parameters where SVP might not be NP-complete. Also lattice crypto is usually based some other lattice problem like LWE, MLWE, MLWR, SIVP etc. Lattice crypto is going to be broadly deployed because it hopefully can resist quantum attack, unlike ECDLP and factoring. |
|