When using the primal attack for MLWE, do you just plug A' found from the circulant matrix into the lattice (Im x n A'), or do you substitute A' as A from the LWE example?
Great Video! Thank you! The only thing I'm not sure about is: what exactly is the difference between Ring LWE and Module LWE? If you could explain, i'd be very grateful! Thanks again!
When using the primal attack for MLWE, do you just plug A' found from the circulant matrix into the lattice (Im x n A'), or do you substitute A' as A from the LWE example?
Thanks again for making these easy to digest videos
Great Video! Thank you!
The only thing I'm not sure about is: what exactly is the difference between Ring LWE and Module LWE? If you could explain, i'd be very grateful!
Thanks again!
Good question! Ring-LWE is Module LWE with k=1.
Check out our notes here: www.usf-crypto.org/lattice-based-crypto/ (apologies for the typos).
@@usfcryptocenter9924 awesome! Thanks! :)