On 02.03.26 02:23, Viktor Dukhovni wrote:
19: 𝐮 ← NTT^{-1}(NTT(𝐀) ∘ 𝐲) + 𝐞_𝟏
I believe that should be transpose of A and not NTT(A). Please correct me if I am misunderstanding something.
Your email is actually a perfect example of where FATT analysis could help. Thanks, -Usama
smime.p7s
Description: S/MIME Cryptographic Signature
_______________________________________________ TLS mailing list -- [email protected] To unsubscribe send an email to [email protected]
