pith:EDUFIN3Y
Explicit cost analysis of Toom-4 multiplication for incomplete NTT in lattice-based cryptography
Explicit addition-chain counts for Toom-4 produce a cost model that identifies parameter ranges where it outperforms Karatsuba inside incomplete-NTT hybrids for lattice cryptography.
arxiv:2605.17505 v1 · 2026-05-17 · cs.CR · cs.SC · math.NT
Add to your LaTeX paper
\usepackage{pith}
\pithnumber{EDUFIN3Y4CWVSLXW4MWPELJZCV}
Prints a linked badge after your title and injects PDF metadata. Compiles on arXiv. Learn more · Embed verified badge
Record completeness
Claims
We present a concrete Toom-4 implementation and derive explicit operation counts that separate additions/subtractions and multiplications over the coefficient field. Our analysis based on addition chains yields a simple cost model for incomplete NTT. Using this model, we analyze hybrid strategies combining Toom-4, Karatsuba, and incomplete NTT. We identify parameter ranges where Toom-4 is advantageous and validate the predicted behavior experimentally.
The addition-chain-derived cost model for Toom-4 accurately reflects the dominant operations in an actual incomplete-NTT implementation across the tested parameter ranges, with no significant hidden costs from memory access or modular reduction that would alter the identified advantage regions.
Derives explicit Toom-4 cost model for incomplete NTT and evaluates hybrid multiplication strategies with experimental validation for lattice crypto.
References
Formal links
Receipt and verification
| First computed | 2026-05-20T00:04:42.702658Z |
|---|---|
| Builder | pith-number-builder-2026-05-17-v1 |
| Signature | Pith Ed25519
(pith-v1-2026-05) · public key |
| Schema | pith-number/v1.0 |
Canonical hash
20e8543778e0ad592ef6e32cf22d391567008a4dcfa24e478a481ccd165bf6e0
Aliases
· · · · ·Agent API
Verify this Pith Number yourself
curl -sH 'Accept: application/ld+json' https://pith.science/pith/EDUFIN3Y4CWVSLXW4MWPELJZCV \
| jq -c '.canonical_record' \
| python3 -c "import sys,json,hashlib; b=json.dumps(json.loads(sys.stdin.read()), sort_keys=True, separators=(',',':'), ensure_ascii=False).encode(); print(hashlib.sha256(b).hexdigest())"
# expect: 20e8543778e0ad592ef6e32cf22d391567008a4dcfa24e478a481ccd165bf6e0
Canonical record JSON
{
"metadata": {
"abstract_canon_sha256": "dcd89a5a9c31d7d9b6523387cfa221638fbaa2c1534f1cb8d4b428c099e2fed6",
"cross_cats_sorted": [
"cs.SC",
"math.NT"
],
"license": "http://creativecommons.org/licenses/by/4.0/",
"primary_cat": "cs.CR",
"submitted_at": "2026-05-17T15:34:27Z",
"title_canon_sha256": "c6f25462163a4cc69caef43b4dd0b0534198dd7b7e7483244549baec57d651a6"
},
"schema_version": "1.0",
"source": {
"id": "2605.17505",
"kind": "arxiv",
"version": 1
}
}