Choosing NTRUEncrypt Parameters in Light of Combined Lattice Reduction and MITM Approaches

  • Philip S. Hirschhorn
  • Jeffrey Hoffstein
  • Nick Howgrave-Graham
  • William Whyte
Part of the Lecture Notes in Computer Science book series (LNCS, volume 5536)


We present the new NTRUEncrypt parameter generation algorithm, which is designed to be secure in light of recent attacks that combine lattice reduction and meet-in-the-middle (MITM) techniques. The parameters generated from our algorithm have been submitted to several standard bodies and are presented at the end of the paper.


