Sign in

Maria Corte-Real Santos

@maria.isogeny.club
109 followers 53 following 31 posts

Post-doc at ENS de Lyon www.mariascrs.com Interested in post-quantum cryptography and isogenies Co-organiser of The Isogeny Club isogeny.club

PostsRepliesMedia
Reposted by Maria Corte-Real Santos
Krijn Reijnders @krijn.isogeni.es · 30/09/2026
New paper! Given a Jacobian over Fp, can you easily check supersingularity? If you've worked with these objects in magma, you know how annoying this question can be. Turns out it's very easy: we give efficient probabilistic tests, and conclusive if you need to be absolutely sure. ia.cr/2026/2259
eprint.iacr.org
Supersingularity and Superspeciality Verification of Abelian Surfaces
Supersingular abelian surfaces are essential in isogeny-based cryptography. Despite this, we have no efficient algorithm to verify if a given abelian surface is supersingular. In this work, we initiat...
064
Maria Corte-Real Santos @maria.isogeny.club · 23/09/2026
On 29 September, Benjamin Wesolowski will give a talk at The Isogeny Club on his recent p^{1/3+o(1)} attack on the isogeny problem! See you all there 🥳 isogeny.club
isogeny.club
The Isogeny Club
155
Maria Corte-Real Santos @maria.isogeny.club · 03/09/2026
Rise and shine, it's time for the Isogeny Club Season Nine! isogeny.club
isogeny.club
The Isogeny Club
185
Reposted by Maria Corte-Real Santos
Krijn Reijnders @krijn.isogeni.es · 16/07/2026
Excited about isogenies? Wanna claim some rewards? Solve one of the seven Isogeny Problems, the hardest open problems in isogeny-based cryptography! Full write-up now on ePrint: ia.cr/2026/1431 Webpage: isogeni.es/problems Now with EVEN MORE REWARDS!!
isogeni.es
The Isogeny Problems
A list of foremost unsolved problems in isogeny-based cryptography, with expositions by leading experts.
1105
Reposted by Maria Corte-Real Santos
ePrint Updates @eprint.ing.bot · 10/06/2026
Algorithms for solving the isogeny problem with oriented elliptic curves (Maria Corte-Real Santos, Arthur Herlédan Le Merdy, Joseph Macula, Michael Meyer, Travis Morrison, Eli Orvis) ia.cr/2026/1219
Abstract. We introduce WayFinder, a framework for generalizing the Delfs-Galbraith and SuperSolver algorithms for the supersingular isogeny problem. Our framework extends the search for elliptic curves with an orientation by an order containing $\mathbb{Z}[\ell \sqrt{-p}]$ to more general orders, and we derive a cost model for such generalisations. Our cost model not only works in a more general context, but also provides more accurate predictions when applied to SuperSolver. We instantiate WayFinder for orders containing $\mathbb{Z}[\ell_1\sqrt{-\ell_2p}]$ where ℓ_(i) are 1 or primes such that the modular curve X₀(ℓ₂) has genus 0. We then introduce a low-storage algorithm for computing an isogeny between two oriented supersingular elliptic curves, even when the curves are oriented by distinct orders. Together, these provide an algorithm that improves on the state of the art for solving the isogeny problem, and a cost model with potential applications to parameter selection in isogeny-based cryptography.
054
Reposted by Maria Corte-Real Santos
ePrint Updates @eprint.ing.bot · 08/06/2026
Isogeny-based Signatures with Randomizable Keys (Andrea Basso, Giacomo Borin, Maria Corte-Real Santos, Pierrick Dartois, Riccardo Invernizzi, Luciano Maino, Robi Pedersen, Michel Seck) ia.cr/2026/1169
Abstract. Digital signature schemes based on isogenies are among the most compact signatures achieving post-quantum security. Recent advances, especially those leveraging higher-dimensional isogenies, have also made such schemes practically efficient. However, comparatively little attention has been devoted to endowing these signatures with additional privacy-enhancing properties, such as the re-randomization of keys and the adaptation of signatures to new public keys. Although some results exist in the isogeny group action setting, these signatures suffer from a subexponential quantum attack which renders them rather inefficient.

In this work, we initiate the first systematic study of privacy-enhancing isogeny-based signatures outside the group-action framework. We base our exploration on the notion of signatures with randomizable keys developed by Celi et al. (FC’24), which aims to unify privacy notions related to key updatability and signature adaptation. In particular, we analyze which of their privacy notions can be achieved from the state-of-the-art signatures SQIsign, PRISM and the hash-and-sign signature scheme derived from the Deuring verifiable unpredictable function (DeuringVUF).

To this end, we naturally extend SQIsign to an SWRK scheme that allows key randomization, and enhance both PRISM and the DeuringVUF signature to additionally allow for message adaptation. We show that, due to the deterministic nature of the signatures, the DeuringVUF signature achieves perfect adaptability. We formally prove all three of our modifications achieve unlinkability against unbounded adversaries, and remain unforgeable under the same assumptions as the original schemes.
Image showing part 2 of abstract.
054
Reposted by Maria Corte-Real Santos
Andrea Basso @andreavbasso.bsky.social · 14/05/2026
Round 3 of the NIST additional signatures process announced! 🎉 And SQIsign is part of it!! ⛷️⛷️
Screenshot of email announcement saying:

Nine Candidates Advance to the Third Round of the Additional Digital Signatures for the PQC Standardization Process

 After 18 months of evaluation, NIST has selected nine candidates for the third round of the Additional Digital Signatures for the Post-Quantum Cryptography (PQC) Standardization Process. The advancing digital signature algorithms are:

FAEST
HAWK
MAYO
MQOM
QR-UOV
SDitH
SNOVA
SQIsign
UOV
02613
Maria Corte-Real Santos @maria.isogeny.club · 09/05/2026
Last year we co-organised "Decrypting Diversity" with the goal of promoting diversity, inclusion, and gender equality within the cryptography community. We now have a report summarising the great talks and discussions we had during the event, available here: decryptingdiversity.com/report.pdf
decryptingdiversity.com
010
Reposted by Maria Corte-Real Santos
Giacomo Borin @gbor.in · 09/03/2026
And we also have a QROM proof!
061
Maria Corte-Real Santos @maria.isogeny.club · 06/03/2026
New PRISM improvements 🥳 We extended our PRISM paper to present two new variants: one that achieves strong unforgeability, and another that allows for smaller parameters and therefore faster signatures! eprint.iacr.org/2026/443.pdf
eprint.iacr.org
195
Reposted by Maria Corte-Real Santos
Paolo Santini @palli-santini.bsky.social · 16/02/2026
📢📢📢 𝐌𝐚𝐆𝐈𝐂 𝟐𝟎𝟐𝟔 𝐌𝐚𝐫𝐜𝐡𝐞 𝐖𝐨𝐫𝐤𝐬𝐡𝐨𝐩 𝐨𝐧 𝐆𝐫𝐨𝐮𝐩 𝐀𝐜𝐭𝐢𝐨𝐧𝐬 𝐢𝐧 𝐂𝐫𝐲𝐩𝐭𝐨𝐠𝐫𝐚𝐩𝐡𝐲 In May 5-8, let's all gather together to speak about Group Actions! Early registration until March 8! Organized with Marco Baldi, @bsky.defeo.lu, @giacomoborin.bsky.social, @andreavbasso.bsky.social magic-workshop.github.io
magic-workshop.github.io
MaGIC 2026 - Marche Workshop on Group Actions in Cryptography
047
Reposted by Maria Corte-Real Santos
mccurley.bsky.social @mccurley.bsky.social · 03/02/2026
The IACR board sent a survey to members last year, and it took us a while to analyze the results and publish findings. You can see them at iacr.org/surveyresults/
iacr.org
International Association for Cryptologic Research
289
Maria Corte-Real Santos @maria.isogeny.club · 13/11/2025
Catch up on last weeks Isogeny Club talk! We welcomed Eli Orvis who taught us about abstract isogeny graphs: www.youtube.com/watch?v=Gzcc...
youtube.com
The Isogeny Club #7.4 Ihara zeta functions of abstract isogeny graphs and modular curves
YouTube video by The Isogeny Club
065
Maria Corte-Real Santos @maria.isogeny.club · 14/10/2025
Last week at The Isogeny Club we had a great talk by Sebastian Spindler about modular curves! Check it out here: www.youtube.com/watch?v=EDU7... Be sure to join us again next Tuesday at the usual time :) isogeny.club
youtube.com
The Isogeny Club #7.2 Counting l-isogenies with different modular polynomials
YouTube video by The Isogeny Club
033
Maria Corte-Real Santos @maria.isogeny.club · 23/09/2025
The Isogeny Club Season 7 starts today! At 5pm CEST, Bruno Sterner will talk about finding large smooth twins from short lattice vectors. More details at isogeny.club
1107
Reposted by Maria Corte-Real Santos
Krijn Reijnders @krijn.isogeni.es · 15/09/2025
Announcing The Isogeny Problems! A curated list of the seven foremost unsolved problems in isogeny-based cryptography. Solving one of these profound questions would mark a monumental advance, and as a resolver you'd get eternal honor and epic rewards! Full list: isogeni.es/problems
isogeni.es
The Isogeny Problems
1166
Reposted by Maria Corte-Real Santos
Damien Robert @damienrobert.bsky.social · 15/09/2025
And you solve the failure rate problem, which was a big source of trouble in the previous implementation. And the new algorithm is simpler to implement! So very exciting result! (Although I had been spoiled already by @jonathan.isogeny.club talk at Bordeaux in May :))
042
Maria Corte-Real Santos @maria.isogeny.club · 12/09/2025
TL;DR: we solve norm equations in a better way and get around a 2x improvement to IdealToIsogeny routines crucial in both SQIsign and PRISM.
2125
Reposted by Maria Corte-Real Santos
ePrint Updates @eprint.ing.bot · 20/06/2025
Evaluation of Modular Polynomials from Supersingular Elliptic Curves (Maria Corte-Real Santos, Jonathan Komada Eriksen, Antonin Leroux, Michael Meyer, Lorenz Panny) ia.cr/2025/1154
Abstract. We present several new algorithms to evaluate modular polynomials of level ℓ modulo a prime p on an input j. More precisely, we introduce two new generic algorithms, sharing the following similarities: they are based on a CRT approach; they make use of supersingular curves and the Deuring correspondence; and, their memory requirements are optimal.

The first algorithm combines the ideas behind a hybrid algorithm of Sutherland in 2013 with a recent algorithm to compute modular polynomials using supersingular curves introduced in 2023 by Leroux. The complexity (holding around several plausible heuristic assumptions) of the resulting algorithm matches the O(ℓ³log³ℓ+ℓlogp) time complexity of the best known algorithm by Sutherland, but has an optimal memory requirement.

Our second algorithm is based on a sub-algorithm that can evaluate modular polynomials efficiently on supersingular j-invariants defined over 𝔽_(p), and achieves heuristic complexity quadratic in both ℓ and log j, and linear in log p. In particular, it is the first generic algorithm with optimal memory requirement to obtain a quadratic complexity in~ℓ.

Additionally, we show how to adapt our method to the computation of other types of modular polynomials such as the one stemming from Weber’s function.

Finally, we provide an optimised implementation of the two algorithms detailed in this paper, though we emphasise that various modules in our codebase may find applications outside their use in this paper.
Image showing part 2 of abstract.
054
Reposted by Maria Corte-Real Santos
COSIC @cosic.bsky.social · 16/06/2025
Registration for the Leuven Isogeny Days 6 is now open! 📅 10–12 Sept 2025 @ KU Leuven Morning: research talks Afternoon: brainstorming sessions More info: www.esat.kuleuven.be/cosic/projec... #isogeny #isocrypt #erc #postquantum
0119
Reposted by Maria Corte-Real Santos
Andrea Basso @andreavbasso.bsky.social · 10/06/2025
We (finally) published all the material from this course on SQIsign, including lecture slides and exercise sheets for the Sage laboratory. Available here: github.com/andreavico/S...
github.com
GitHub - andreavico/SQIsign_summer_school: Slides and worksheets for the introductory course on SQIsign held in Trento in May 2025
Slides and worksheets for the introductory course on SQIsign held in Trento in May 2025 - andreavico/SQIsign_summer_school
11616
Reposted by Maria Corte-Real Santos
Diego F. Aranha @dfaranha.bsky.social · 15/05/2025
Registrations for the Decrypting Diversity Summit are open: decryptingdiversity.com/registration/ The event's focus is to develop actions to better support underrepresented groups in cryptography while showcasing the exceptional career paths and research contributions of these communities.
decryptingdiversity.com
Decrypting Diversity Summit
Decrypting Diversity Summit
124
Reposted by Maria Corte-Real Santos
COSIC @cosic.bsky.social · 12/05/2025
🥇The paper "PRISM: Simple And Compact Identification and Signatures From Large Prime Degree Isogenies", co-authored by COSIC, has won the best paper award at @IACR_News #PKC 2025 in Røros, Norway. #pkc2025 Link: link.springer.com/chapter/10.1...
0104
Reposted by Maria Corte-Real Santos
Luca De Feo @bsky.defeo.lu · 25/04/2025
The SQIparty starts on Monday, but it's still time to register! We prepared an exciting program for you with a balanced mix of talks, coding sprints, skillshares and other activities! www.cig.udl.cat/SQIparty2025... See you in Lleida!
299
Reposted by Maria Corte-Real Santos
Jonathan Komada Eriksen @jonathan.isogeny.club · 25/04/2025
The mystery guest and myself have made it to Paris! Next stop, Barcelona!
022
Reposted by Maria Corte-Real Santos
Jonathan Komada Eriksen @jonathan.isogeny.club · 24/04/2025
As a surprise for everyone attending, we will even have a mystery guest joining us as well, who you don't want to miss! In fact, we have already started the train journey from Leuven! Curious about the mystery guest? Well, what are you waiting for, sign up and find out next weekend!
243
Maria Corte-Real Santos @maria.isogeny.club · 23/04/2025
Season 6 of the Isogeny Club is officially done! You can catch up with all the talks here: isogeny.club If, like us, you haven't had enough isogenies for the term, be sure to join us at the Brainstorm Sessions affiliated with Eurocrypt: isogeny.club/eurocrypt
isogeny.club
The Isogeny Club
163
Maria Corte-Real Santos @maria.isogeny.club · 03/04/2025
Really excited to share the Decrypting Diversity Summit happening in Montpellier, France from 17-20 June! The goal of the summit is to promote diversity, inclusivity, and gender equality within the cryptography community. For more info: decryptingdiversity.com
decryptingdiversity.com
Decrypting Diversity Summit
Decrypting Diversity Summit
196
Reposted by Maria Corte-Real Santos
Andrea Basso @andreavbasso.bsky.social · 24/03/2025
Registration is now open! www.cig.udl.cat/SQIparty2025...
034
Reposted by Maria Corte-Real Santos
Luca De Feo @bsky.defeo.lu · 13/03/2025
Lleida is very well connected by train to Barcelona (1 hour) and to Madrid (2 hours). Ideal to get acclimated to tapas before going to Eurocrypt and to the Isogeny brainstorm! isogeny.club/eurocrypt bsky.app/profile/icas...
isogeny.club
The Isogeny Club
012
Reposted by Maria Corte-Real Santos
Luca De Feo @bsky.defeo.lu · 13/03/2025
Fancy some isogeny crypto? Join us for a 3-day workshop on isogeny-based cryptography in Lleida, Catalonia, April 28-30 www.cig.udl.cat/icrypto2025_... Brought to you by ULleida's Cryptography+Graphs group, the SQIsign team and friends! Registration and program coming soon Registration is free!
Cathedral of La Seu Vella in Lleida
289
Maria Corte-Real Santos @maria.isogeny.club · 06/03/2025
Next week (Tuesday 5pm CET) at The Isogeny Club we'll have Laurane Marco (EPFL) who will talk to us about computing modular polynomials modulo a generic prime! More details at isogeny.club
isogeny.club
The Isogeny Club
094
Maria Corte-Real Santos @maria.isogeny.club · 19/02/2025
The wait is finally over! Flowers are slowly blooming, birds are chiriping, and the Isogeny Club season 6 is about to start! Join us next Tuesday, February 25th at 17:00 CET, when Abel Laval will introduce us to a brand new analogue of the KLPT algorithm in dimension two! 🥳 isogeny.club
151
Reposted by Maria Corte-Real Santos
Krijn Reijnders @krijn.isogeni.es · 04/02/2025
Absolutely thrilled for season six of the Isogeny Club (isogeny.club) starting February 25th by a talk by Abel Laval!
isogeny.club
The Isogeny Club
053
Maria Corte-Real Santos @maria.isogeny.club · 29/01/2025
Really excited to finally share PRISM, a new isogeny-based signature 🥳 joint work with lots of awesome people. eprint.iacr.org/2025/135
eprint.iacr.org
PRISM: Simple And Compact Identification and Signatures From Large Prime Degree Isogenies
The problem of computing an isogeny of large prime degree from a supersingular elliptic curve of unknown endomorphism ring is assumed to be hard both for classical as well as quantum computers. In thi...
1104
Maria Corte-Real Santos @maria.isogeny.club · 11/12/2024
As a Christmas gift for everyone, we have one exciting final talk of this season! Join the #isogenyclub next Tuesday (17th Dec), where Sina Schaeffler will talk about constant-time lattice reduction for SQIsign. More info at isogeny.club
064
Reposted by Maria Corte-Real Santos
Sofia Celi @claucece.bsky.social · 27/11/2024
Are you attending Asiacrypt2024? If you are a women-in-cryptography, you can participate in our coffee breaks: docs.google.com/forms/d/e/1F... We will match you with someone and you can grab a coffee/tea in person!
096
Maria Corte-Real Santos @maria.isogeny.club · 27/11/2024
Did you hear the news? There’s a new isogeny-based signature scheme on the block! Join the #isogenyclub next Tuesday (3rd Dec), where Riccardo Invernizzi will introduce us to PRISM. More info at isogeny.club
030
Reposted by Maria Corte-Real Santos
Krijn Reijnders @krijn.isogeni.es · 05/11/2024
Having fixed most issues, isogeni.es should be up and running now. Perhaps useful for others too! (it simply scrapes recent isogeny papers from ePrint, and formats these nicely)
isogeni.es
185