同種写像の経路を作らずアーベル曲面の分解を検出する
Detecting split surfaces, RM surfaces, and minimum walks on isogeny graphs
この論文をやさしく読む
ひとことで言うと
暗号にも使われる幾何学的な対象の分解を、複雑な写像の経路を作らずに判定します。
何に役立つ?
2次元の同種写像暗号の安全性分析や、実乗法という追加の代数構造の検出に役立つ計算手法です。
この研究の面白いところ
幾何学の計算を5変数の二次形式による数の表現へ置き換え、小さな素数の既知の結果と1000ビットまでの計算実験を調べています。
どこまで分かった?
大きなパラメータでの分布や素数冪因子の変化は観測結果です。分解の検出と、実際に経路を構成して暗号を解読することは異なり、要旨は解読成功を報告していません。
v1のアブストラクトに基づくAI解説。日本語訳とは別に、用途の解釈を含みます。
アブストラクトの日本語訳
主偏極付き超特別アーベル曲面の同種写像グラフにおける、分解可能な曲面の検出可能性を研究する。これは2次元の同種写像暗号の安全性解析に関係する。精密化されたHumbert不変量を用い、明示的な同種写像計算を、5変数の正定値二次形式による原始表現の問題に置き換える。(N,N)分解を検出し、対応する同種写像の経路を構成せずに、超特別ヤコビ多様体の最小の(N,N)分解レベルを計算するアルゴリズムを開発する。同じ枠組みで、実二次整環の判別式の原始表現を通じて、実乗法(RM)整環の埋め込みも検出する。 RMについては、小さな素数の網羅的データと、227 ≤ p ≤ 1619の各素数につき10万個のランダムな偏極を使い、平方因子を持たない判別式D ≤ 100の原始表現を調べる。最初に原始的に表現される非自明な判別式は通常小さい。この方法を二つの領域で実験的に適用する。既約な主偏極が網羅的に知られている11 ≤ p ≤ 251では、精密化Humbert不変量から復元した自己同型データが、既約偏極についてのIbukiyama–Katsura–Oortの個数を再現する。大きなパラメータでは1000ビットの素数まで到達し、得られる分解次数はlog₂N ≈ log₂pを満たす。分布の形は全範囲で安定しており、検出される(N,N)同種写像の次数は約p²となる。Nの最大素数冪因子について観測された最小値は250ビットまでは小さいが、300ビット以降で急増する。
v1の要旨から自動生成。本文の精読・人による確認は未実施。
- 初稿
- 2026-09-20(UTC)
- 最新改訂
- 2026-09-20 · v1
- 査読・掲載
- 査読状況未確認
更新履歴
- v1 2026-09-20 この版を読む
取得できた版を表示。版の更新は査読済みを意味しません。過去版の本文差分は未解析です。
原文の要旨
We study the detectability of split surfaces in isogeny graphs of principally polarized superspecial abelian surfaces, a question relevant to the security analysis of dimension-$2$ isogeny-based cryptography. Our approach uses refined Humbert invariants to replace explicit isogeny computations with primitive representation problems for positive definite quadratic forms in five variables. We develop algorithms to detect $(N,N)$-splittings and to compute the minimum $(N,N)$-splitting level of a superspecial Jacobian without constructing the corresponding isogeny path. The same framework detects embeddings of real multiplication (RM) orders through primitive representations of discriminants of real quadratic orders. For RM, we use exhaustive small-prime data together with $100{,}000$ random polarizations per prime for $227\leq p\leq1619$, testing primitive representations of square-free discriminants $D\leq100$; the first nontrivial primitively represented discriminant is typically small. We apply these methods experimentally in two regimes. For $11\leq p\leq251$, where the irreducible principal polarizations are known exhaustively, the automorphism data recovered from the refined Humbert invariant reproduces the counts of Ibukiyama--Katsura--Oort for the irreducible polarizations. For large parameters, we reach primes of $1000$ bits, where the splitting degrees produced satisfy $\log_2N\approx\log_2p$ with a distribution whose shape is stable across the whole range, so the detected $(N,N)$-isogeny has degree about $p^{2}$; the smallest observed largest prime-power divisor of $N$ remains small up to $250$ bits and increases sharply from $300$ bits onward.
著者のコメント
24 pages, 5 figures
arXiv ID: 2609.23941 / 要約の誤りについて