On 02.03.26 02:23, Viktor Dukhovni wrote:

     19: 𝐮 ← NTT^{-1}(NTT(𝐀) ∘ 𝐲) + 𝐞_𝟏

I believe that should be transpose of A and not NTT(A). Please correct me if I am misunderstanding something.

Your email is actually a perfect example of where FATT analysis could help.

Thanks,

-Usama

Attachment: smime.p7s
Description: S/MIME Cryptographic Signature

_______________________________________________
TLS mailing list -- [email protected]
To unsubscribe send an email to [email protected]

Reply via email to