{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2019:X3V4XBCGKKGYCZQ7V27Y7MSEY6","short_pith_number":"pith:X3V4XBCG","canonical_record":{"source":{"id":"1903.06451","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2019-03-15T10:38:59Z","cross_cats_sorted":["math.NT"],"title_canon_sha256":"0bba07b194688673c5aba6e4ee48767b61b762cbcd39c753218f6f2d71476fd5","abstract_canon_sha256":"305cdd87463ca0ebdc6491f7977686c85f2987d5c09fb0be91feb36249a84db1"},"schema_version":"1.0"},"canonical_sha256":"beebcb8446528d81661faebf8fb244c7bbddee11438291c3147ef0a97bc9b7f8","source":{"kind":"arxiv","id":"1903.06451","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1903.06451","created_at":"2026-05-17T23:51:10Z"},{"alias_kind":"arxiv_version","alias_value":"1903.06451v1","created_at":"2026-05-17T23:51:10Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1903.06451","created_at":"2026-05-17T23:51:10Z"},{"alias_kind":"pith_short_12","alias_value":"X3V4XBCGKKGY","created_at":"2026-05-18T12:33:33Z"},{"alias_kind":"pith_short_16","alias_value":"X3V4XBCGKKGYCZQ7","created_at":"2026-05-18T12:33:33Z"},{"alias_kind":"pith_short_8","alias_value":"X3V4XBCG","created_at":"2026-05-18T12:33:33Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2019:X3V4XBCGKKGYCZQ7V27Y7MSEY6","target":"record","payload":{"canonical_record":{"source":{"id":"1903.06451","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2019-03-15T10:38:59Z","cross_cats_sorted":["math.NT"],"title_canon_sha256":"0bba07b194688673c5aba6e4ee48767b61b762cbcd39c753218f6f2d71476fd5","abstract_canon_sha256":"305cdd87463ca0ebdc6491f7977686c85f2987d5c09fb0be91feb36249a84db1"},"schema_version":"1.0"},"canonical_sha256":"beebcb8446528d81661faebf8fb244c7bbddee11438291c3147ef0a97bc9b7f8","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-17T23:51:10.810658Z","signature_b64":"Z92021sjPLTtCM+sK1KkU3dTU7i6I+3rzWbJFQ5tNmM+zeX8niDl9ucJ4lnnYXUrjaonv2o0foZJtnW8bq4kBw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"beebcb8446528d81661faebf8fb244c7bbddee11438291c3147ef0a97bc9b7f8","last_reissued_at":"2026-05-17T23:51:10.810004Z","signature_status":"signed_v1","first_computed_at":"2026-05-17T23:51:10.810004Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1903.06451","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:51:10Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"c3xGYt5G4QpKXORZXx3ZH87nEeC8tzCyYDfVTGqwPABLcszEvczUFw5JfOV4mnMDHhVAf/VBKXxiVglkZlHGCQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-03T19:48:08.397112Z"},"content_sha256":"2f5cb1700a37a7a062c17747276e030af31be81032dd2340c56eb04abb834c5f","schema_version":"1.0","event_id":"sha256:2f5cb1700a37a7a062c17747276e030af31be81032dd2340c56eb04abb834c5f"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2019:X3V4XBCGKKGYCZQ7V27Y7MSEY6","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Hash functions from superspecial genus-2 curves using Richelot isogenies","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["math.NT"],"primary_cat":"cs.CR","authors_text":"Benjamin Smith (GRACE), Thomas Decru (KU Leuven), Wouter Castryck (KU Leuven)","submitted_at":"2019-03-15T10:38:59Z","abstract_excerpt":"Last year Takashima proposed a version of Charles, Goren and Lauter's hash function using Richelot isogenies, starting from a genus-2 curve that allows for all subsequent arithmetic to be performed over a quadratic finite field Fp2. In a very recent paper Flynn and Ti point out that Takashima's hash function is insecure due to the existence of small isogeny cycles. We revisit the construction and show that it can be repaired by imposing a simple restriction, which moreover clarifies the security analysis. The runtime of the resulting hash function is dominated by the extraction of 3 square roo"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1903.06451","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-17T23:51:10Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"byigKRMPzYdF3Ztroodha4+WsF/TtphhvyaU1iyBgT9108QzVneLEAijjUBeuT2pU0WK3HuFhVgHgLxnBsmBCw==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-03T19:48:08.397491Z"},"content_sha256":"c587a861618e600e0711806419775c5b19e65f0c24ae3546f5092c68c0909806","schema_version":"1.0","event_id":"sha256:c587a861618e600e0711806419775c5b19e65f0c24ae3546f5092c68c0909806"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/X3V4XBCGKKGYCZQ7V27Y7MSEY6/bundle.json","state_url":"https://pith.science/pith/X3V4XBCGKKGYCZQ7V27Y7MSEY6/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/X3V4XBCGKKGYCZQ7V27Y7MSEY6/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-03T19:48:08Z","links":{"resolver":"https://pith.science/pith/X3V4XBCGKKGYCZQ7V27Y7MSEY6","bundle":"https://pith.science/pith/X3V4XBCGKKGYCZQ7V27Y7MSEY6/bundle.json","state":"https://pith.science/pith/X3V4XBCGKKGYCZQ7V27Y7MSEY6/state.json","well_known_bundle":"https://pith.science/.well-known/pith/X3V4XBCGKKGYCZQ7V27Y7MSEY6/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2019:X3V4XBCGKKGYCZQ7V27Y7MSEY6","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"305cdd87463ca0ebdc6491f7977686c85f2987d5c09fb0be91feb36249a84db1","cross_cats_sorted":["math.NT"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2019-03-15T10:38:59Z","title_canon_sha256":"0bba07b194688673c5aba6e4ee48767b61b762cbcd39c753218f6f2d71476fd5"},"schema_version":"1.0","source":{"id":"1903.06451","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1903.06451","created_at":"2026-05-17T23:51:10Z"},{"alias_kind":"arxiv_version","alias_value":"1903.06451v1","created_at":"2026-05-17T23:51:10Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1903.06451","created_at":"2026-05-17T23:51:10Z"},{"alias_kind":"pith_short_12","alias_value":"X3V4XBCGKKGY","created_at":"2026-05-18T12:33:33Z"},{"alias_kind":"pith_short_16","alias_value":"X3V4XBCGKKGYCZQ7","created_at":"2026-05-18T12:33:33Z"},{"alias_kind":"pith_short_8","alias_value":"X3V4XBCG","created_at":"2026-05-18T12:33:33Z"}],"graph_snapshots":[{"event_id":"sha256:c587a861618e600e0711806419775c5b19e65f0c24ae3546f5092c68c0909806","target":"graph","created_at":"2026-05-17T23:51:10Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Last year Takashima proposed a version of Charles, Goren and Lauter's hash function using Richelot isogenies, starting from a genus-2 curve that allows for all subsequent arithmetic to be performed over a quadratic finite field Fp2. In a very recent paper Flynn and Ti point out that Takashima's hash function is insecure due to the existence of small isogeny cycles. We revisit the construction and show that it can be repaired by imposing a simple restriction, which moreover clarifies the security analysis. The runtime of the resulting hash function is dominated by the extraction of 3 square roo","authors_text":"Benjamin Smith (GRACE), Thomas Decru (KU Leuven), Wouter Castryck (KU Leuven)","cross_cats":["math.NT"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2019-03-15T10:38:59Z","title":"Hash functions from superspecial genus-2 curves using Richelot isogenies"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1903.06451","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:2f5cb1700a37a7a062c17747276e030af31be81032dd2340c56eb04abb834c5f","target":"record","created_at":"2026-05-17T23:51:10Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"305cdd87463ca0ebdc6491f7977686c85f2987d5c09fb0be91feb36249a84db1","cross_cats_sorted":["math.NT"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2019-03-15T10:38:59Z","title_canon_sha256":"0bba07b194688673c5aba6e4ee48767b61b762cbcd39c753218f6f2d71476fd5"},"schema_version":"1.0","source":{"id":"1903.06451","kind":"arxiv","version":1}},"canonical_sha256":"beebcb8446528d81661faebf8fb244c7bbddee11438291c3147ef0a97bc9b7f8","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"beebcb8446528d81661faebf8fb244c7bbddee11438291c3147ef0a97bc9b7f8","first_computed_at":"2026-05-17T23:51:10.810004Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-17T23:51:10.810004Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"Z92021sjPLTtCM+sK1KkU3dTU7i6I+3rzWbJFQ5tNmM+zeX8niDl9ucJ4lnnYXUrjaonv2o0foZJtnW8bq4kBw==","signature_status":"signed_v1","signed_at":"2026-05-17T23:51:10.810658Z","signed_message":"canonical_sha256_bytes"},"source_id":"1903.06451","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:2f5cb1700a37a7a062c17747276e030af31be81032dd2340c56eb04abb834c5f","sha256:c587a861618e600e0711806419775c5b19e65f0c24ae3546f5092c68c0909806"],"state_sha256":"de5dad0c725f8250fa71c879e22b950ea54eec026c0c861a122266772ae8dc0e"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"diMeSnv96jb/P1cRcD7YaYFwlHCOi9c6zwHgAae3ctwLHVFcNcr2Uh8SnNOw1ZKhNqpzKr1qVp+BxhLJKvGyBQ==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-03T19:48:08.399480Z","bundle_sha256":"bb3b78904fc1079243240ddf7de0a869ed8dc1d2113e7f7faeda8e936374c0d6"}}