Estimates of the probability of reversibility of random polynomials used in the modified version of NTRU cryptosystem


  • А.Н. Алексейчук
  • А.А. Матийко


asymmetric cryptography, ring of truncated polynomials, NTRU, trigonometric sums method


Using the trigonometric sums method we obtain analytical bounds for the probability of reversibility of polynomials used as secret keys in a modified version of NTRU encryption scheme. We show that the obtained bounds are applicable in practice to choosing the long-term parameters of the encryption scheme.


Hoffstein, J., Pipher, J., Silverman, J.H. NTRU: a new high speed public key cryptosystem // Preprint, presented at the rump session of Crypto’96. – 1996.

Steinfeld, R. NTRU cryptosystem: resent developments and emerging mathematical problems in finite polynomial rings // /NTRU_survey.pdf. – 2014.

Bernstein, D.J., Chuengsatiansup Ch., Lange T., van Vredendaal Ch. NTRU Prime //

American National Standard X9.98-2010. Lattice-based polynomial public key encryption algorithm, Part 1: key establishment, Part 2: data encryption. – 2010.

Hirschhorn, P., Hoffstein, J., Howgrave-Graham, N., Whyte, W. Choosing NTRU parameters in light of combined lattice reduction and MITM aproaches // Applied Cryptography and Network Security, LNCS. – Vol. 5536. – 2009. – P. 437 – 455.

Stehle' D., Steinfeld R. Making NTRU as secure as worst-case problems over ideal lattices // Advances in Cryptology – EUROCRYPT 2011. – Proceedings. – Springer-Verlag. – 2011. – P.27–47.

Hoffstein, J., Pipher, J., Schanck, J.M., Silverman, J.H., Whyte, W., Zhang, Z. Choosing parameters for NTRUEncrypt //

Елизаров В.П. Конечные кольца. - Москва : Гелиос АРВ, 2006. - 304 с.

Ленг, С. Алгебра ; пер. с англ. - Москва : Мир, 1968. - 564 с. 10. Лидл, Р., Нидеррайтер, Г. Конечные поля : в 2 т. ; пер. с англ. - Москва : Мир, 1988. - 818 с.

Babai, L. The Fourier transform and equations over finite abelian groups // /ren/fourier.pdf. – 2002.

How to Cite

Алексейчук, А., & Матийко, А. (2017). Estimates of the probability of reversibility of random polynomials used in the modified version of NTRU cryptosystem. Radiotekhnika, 2(189), 38–46. Retrieved from


