Reblogged by nadim@symbolic.software ("Nadim Kobeissi"):
djb@cr.yp.to ("Daniel J. Bernstein") wrote:
My initial assessment of https://eprint.iacr.org/2024/601 is that (1) the "halved dimension" is actually what people normally call the "dimension" for NTRU; (2) Section 4 is understating what the usual attacks accomplish; (3) all 2024/601 exponents are above the usual exponents.