Closed yumi-sakemi closed 4 years ago
Thanks to his comments, I noticed that the description of the Cheon's attack was missing from the security consideration in our draft. The recommended curves are affected by the Cheon's attack, so I added it to the security consideration.
Regarding the twist security, in the case of pairing, since the twisted curve itself is used as a G_2, the security of DLP in G_2 is also considered.
OK!
This is a cross-check as a co-author.
Thank you for your checking, Tsunekazu! I'll close this issue.
Comments from Sean Bowe: