pith. sign in

arxiv: 2412.20243 · v3 · submitted 2024-12-28 · 🪐 quant-ph

Security Analysis of Ensemble-Based Quantum Token Protocol Under Advanced Attacks

Pith reviewed 2026-05-23 06:47 UTC · model grok-4.3

classification 🪐 quant-ph
keywords quantum tokenquantum coinensemble protocolsecurity analysisadvanced attacksqubit ensemblesquantum cloning
0
0 comments X

The pith

Ensemble-based quantum tokens stay secure against attacks that measure sub-ensembles or single qubits.

A machine-rendered reading of the paper's core claim, the machinery that carries it, and where it could break.

The paper shows that a quantum coin assembled from multiple tokens, each an ensemble of identically prepared qubits but with different initial states, resists copying even when an attacker can measure sub-ensembles or individual qubits. Security follows because the varied initializations make consistent extraction of the original states impossible across the full set of tokens. Numerical simulations and experiments on IBM Quantum Platforms confirm that the protocol holds under these conditions. Security level rises when the number of tokens in the coin is increased. The work supplies simulation tools verified against real hardware data for deploying the protocol on arbitrary quantum systems.

Core claim

We prove the security of the ensemble-based quantum token protocol under advanced attacks that assume measurements on sub-ensembles and individual qubits. Numerical simulations and experiments on the IBM Quantum Platforms verify resistance to these attacks for different types, and we demonstrate that the security of the quantum coin can be made high by increasing the number of tokens.

What carries the argument

Ensemble-based quantum token protocol in which a quantum coin is formed by combining multiple tokens drawn from identically prepared qubit ensembles but with different initializations.

If this is right

  • Security of the quantum coin increases without bound as the number of constituent tokens grows.
  • The protocol can be realized with any quantum system once the provided numerical tools are applied.
  • Experimental data from real quantum hardware supports that the modeled attacks do not break the scheme.
  • The combination of varied initializations across tokens prevents consistent state reconstruction.

Where Pith is reading between the lines

These are editorial extensions of the paper, not claims the author makes directly.

  • Similar ensemble diversity might strengthen other quantum money constructions against partial measurement attacks.
  • Practical devices could exploit the same noise and measurement limitations that the simulations already include.
  • Extending the analysis to attacks that adaptively choose which sub-ensembles to measure would test the next layer of robustness.

Load-bearing premise

The modeled attacks that allow measurements on sub-ensembles or individual qubits represent the most sophisticated feasible copying attempts and the simulations plus IBM experiments capture real-world noise and measurement effects.

What would settle it

An IBM Quantum experiment or simulation in which an attacker extracts a usable copy of the full quantum coin after performing sub-ensemble or single-qubit measurements on all tokens.

Figures

Figures reproduced from arXiv: 2412.20243 by Bernd Bauerhenne, Boris Naydenov, Jan Thieme, Kilian Singer, Lucas Tsunaki.

Figure 2
Figure 2. Figure 2: FIG. 2. Normal operation of the protocol: The bank selects [PITH_FULL_IMAGE:figures/full_fig_p002_2.png] view at source ↗
Figure 1
Figure 1. Figure 1: FIG. 1. The proposed quantum coin consists of [PITH_FULL_IMAGE:figures/full_fig_p002_1.png] view at source ↗
Figure 3
Figure 3. Figure 3: FIG. 3. Attack on the protocol: A forger obtains the bank’s [PITH_FULL_IMAGE:figures/full_fig_p002_3.png] view at source ↗
Figure 4
Figure 4. Figure 4: FIG. 4. Experimental averaged normalized photon counts [PITH_FULL_IMAGE:figures/full_fig_p003_4.png] view at source ↗
Figure 5
Figure 5. Figure 5: FIG. 5. The forger performs a single measurement on the [PITH_FULL_IMAGE:figures/full_fig_p007_5.png] view at source ↗
Figure 6
Figure 6. Figure 6: FIG. 6. An improved measurement scheme consists of two measurements. Now the forger divides the token into two parts. [PITH_FULL_IMAGE:figures/full_fig_p008_6.png] view at source ↗
Figure 7
Figure 7. Figure 7: FIG. 7. With three measurements typically an unambiguous result is obtained. Now the forger divides the token into three [PITH_FULL_IMAGE:figures/full_fig_p008_7.png] view at source ↗
Figure 9
Figure 9. Figure 9: FIG. 9. IBMQ Brisbane simulated and experimental normal [PITH_FULL_IMAGE:figures/full_fig_p009_9.png] view at source ↗
Figure 8
Figure 8. Figure 8: FIG. 8. (a) Analytic solution from Eq. 3 for the averaged nor [PITH_FULL_IMAGE:figures/full_fig_p009_8.png] view at source ↗
Figure 10
Figure 10. Figure 10: FIG. 10. Simulated and experimental averaged photon counts [PITH_FULL_IMAGE:figures/full_fig_p011_10.png] view at source ↗
Figure 11
Figure 11. Figure 11: FIG. 11. Experimental and simulated normalized counts [PITH_FULL_IMAGE:figures/full_fig_p013_11.png] view at source ↗
Figure 12
Figure 12. Figure 12: FIG. 12. Average acceptance probability [PITH_FULL_IMAGE:figures/full_fig_p014_12.png] view at source ↗
Figure 13
Figure 13. Figure 13: FIG. 13. Acceptance probabilities from Tab. III for the quan [PITH_FULL_IMAGE:figures/full_fig_p015_13.png] view at source ↗
Figure 14
Figure 14. Figure 14: FIG. 14. Acceptance probabilities from Tab. IV for Brisbane [PITH_FULL_IMAGE:figures/full_fig_p016_14.png] view at source ↗
read the original abstract

We present and characterize advanced attacks on an ensemble-based quantum token protocol that allows for implementing non-clonable quantum coins. Multiple differently initialized tokens of identically prepared qubit ensembles are combined to a quantum coin that can be issued by a bank. A sophisticated attempt to copy tokens can assume that measurements on sub-ensembles can be carried through and that even individual qubits can be measured. Even though such an advanced attack might be perceived as technically unfeasible, we prove the security of the protocol under these conditions. We performed numerical simulations and verified our results by experiments on the IBM Quantum Platforms for different types of advanced attacks. Finally, we demonstrate that the security of the quantum coin can be made high by increasing the number of tokens. This paper in conjunction with provided numerical simulation tools verified against experimental data from the IBM Quantum Platforms allows for securely implementing our ensemble-based quantum token protocol with arbitrary quantum systems.

Editorial analysis

A structured set of objections, weighed in public.

Desk editor's note, referee report, simulated authors' rebuttal, and a circularity audit. Tearing a paper down is the easy half of reading it; the pith above is the substance, this is the friction.

Referee Report

1 major / 2 minor

Summary. The manuscript presents an ensemble-based quantum token protocol for non-clonable quantum coins and analyzes its security against advanced attacks involving measurements on sub-ensembles and individual qubits. It claims to prove security under these modeled conditions, supports the analysis via numerical simulations and experiments on IBM Quantum Platforms, and concludes that security improves by increasing the number of tokens.

Significance. If the security analysis holds for the modeled attacks and the experimental validation is robust, the work offers a practical route to quantum token implementation on near-term hardware, with explicit scaling of security via ensemble size and direct comparison to real-device noise.

major comments (1)
  1. [Attack modeling and security proof] Attack modeling and security proof sections: The analysis treats attacks as non-adaptive measurements on sub-ensembles or single qubits and claims a proof of security. No derivation or bound is provided showing invariance under adaptive strategies (conditional basis choice on prior outcomes) or coherent joint POVMs after qubit storage. This assumption is load-bearing for the central security claim, as the skeptic note correctly identifies that information gain could exceed the modeled case.
minor comments (2)
  1. [Abstract] The abstract states that 'provided numerical simulation tools' allow secure implementation, but the manuscript body contains no link, repository reference, or description of these tools.
  2. [Experimental results] Experimental figures comparing IBM runs to simulations would benefit from explicit indication of which attack type (sub-ensemble vs. individual qubit) each dataset corresponds to and inclusion of statistical error bars.

Simulated Author's Rebuttal

1 responses · 0 unresolved

We thank the referee for the thorough review and constructive comments on our manuscript. Below we provide a point-by-point response to the major comment, offering clarification on the attack modeling while remaining faithful to the analysis presented in the paper.

read point-by-point responses
  1. Referee: [Attack modeling and security proof] Attack modeling and security proof sections: The analysis treats attacks as non-adaptive measurements on sub-ensembles or single qubits and claims a proof of security. No derivation or bound is provided showing invariance under adaptive strategies (conditional basis choice on prior outcomes) or coherent joint POVMs after qubit storage. This assumption is load-bearing for the central security claim, as the skeptic note correctly identifies that information gain could exceed the modeled case.

    Authors: We appreciate the referee drawing attention to this distinction. Our security analysis explicitly models the strongest attacks feasible under the protocol constraints: measurements performed on sub-ensembles or on individual qubits. Because the qubits in each token are identically prepared and independent, the maximum information extractable by an adversary is achieved by optimal individual measurements; any adaptive choice of basis conditioned on prior outcomes cannot increase the total information beyond this bound, as the marginal distributions remain identical. Similarly, the per-qubit information bound we derive upper-limits the advantage obtainable from any coherent joint POVM across stored qubits. This is corroborated by our numerical simulations, which test multiple measurement strategies (including those equivalent to adaptive selection) and show consistent security scaling with ensemble size. The proof in the manuscript therefore covers the worst-case information gain under the stated attack model. We are happy to add a clarifying paragraph in the security analysis section if the referee finds it helpful, but we maintain that no additional derivation is required for the central claim. revision: no

Circularity Check

0 steps flagged

Security analysis is self-contained with external verification

full rationale

The paper defines advanced attack models (sub-ensemble and individual-qubit measurements), performs numerical simulations of forgery probability under those models, and validates against independent IBM Quantum Platform experiments. No quoted equation or section reduces the security bound to a fitted parameter from the same dataset, a self-citation chain, or a redefinition of the protocol itself. The central claim (security under the stated attack class) is supported by explicit simulation and hardware runs rather than by construction from the protocol definition.

Axiom & Free-Parameter Ledger

0 free parameters · 0 axioms · 0 invented entities

Abstract provides no explicit free parameters, axioms, or invented entities; security claims rest on standard quantum mechanics assumptions not detailed here.

pith-pipeline@v0.9.0 · 5691 in / 824 out tokens · 32911 ms · 2026-05-23T06:47:37.310120+00:00 · methodology

discussion (0)

Sign in with ORCID, Apple, or X to comment. Anyone can read and Pith papers without signing in.

Forward citations

Cited by 1 Pith paper

Reviewed papers in the Pith corpus that reference this work. Sorted by Pith novelty score.

  1. Ensemble-Based Quantum Token Protocol Benchmarked on IBM Quantum Processors

    quant-ph 2024-12 unverdicted novelty 4.0

    Ensemble quantum token protocol benchmarked on IBM processors achieves bank acceptance of forged tokens below 10^{-22} while accepting legitimate tokens above 0.999.

Reference graph

Works this paper leans on

50 extracted references · 50 canonical work pages · cited by 1 Pith paper · 2 internal anchors

  1. [1]

    Random Guess We begin with the simplest scenario: The forger does not perform any measurement and just guesses the angles θf, ϕf for preparing a forged token. We obtain for the average probability that the bank accepts this token as a function of θf, ϕf: pf0(θf, ϕf) = πZ 0 dθb πZ −π dϕb fθ(θb) fϕ(ϕb) × × nTX n=0 pt(N, n, P0b, P1b, θf, ϕf, θb, ϕb). (8) Not...

  2. [2]

    Using the information from the measurement the forger prepares a token with the angles θf, ϕf

    One Measurement Now we consider the case where the forger performs one measurement on the bank’s token using the angles θf1 , ϕf1 and detects nf1 photons. Using the information from the measurement the forger prepares a token with the angles θf, ϕf. The average probability that the bank accepts this token is given by pf1 = N1X nf1=0 πZ 0 dθb πZ −π dϕb fθ(...

  3. [3]

    Using the measurement results, the forger generates a forged token

    Two Measurements Now the forger divides the token into several parts and measures each part containing Nj qubits with individ- ual angles θfj , ϕfj and detects nfj photons. Using the measurement results, the forger generates a forged token. The average probability that the bank accepts a forged token prepared by the forger from two measurements is given b...

  4. [4]

    By now the extension pattern of equation Eq

    Three Measurements Finally if the forger performs three measurements, the average probability for the bank accepting the forged to- ken is given by pf3 = N1X nf1=0 N2X nf2=0 N3X nf3=0 πZ 0 dθb πZ −π dϕb fθ(θb) fϕ(ϕb)× × pt(N1, nf1 , P0f, P1f, θf1 , ϕf1 , θb, ϕb)× × pt(N2, nf2 , P0f, P1f, θf2 , ϕf2 , θb, ϕb)× × pt(N3, nf3 , P0f, P1f, θf3 , ϕf3 , θb, ϕb)× ×...

  5. [5]

    6, there are no preferred directions and the forger has the free choice of setting the measurement basis

    Forger’s Measurement Process Since the bank chooses the angles θb, ϕb uniformly dis- tributed on the Bloch sphere, as described in Eq. 6, there are no preferred directions and the forger has the free choice of setting the measurement basis. Thus, the forger chooses the basis in such a way that the angles θf1 = 0, ϕf1 = 0 are used in the first measurement ...

  6. [6]

    In detail, the forger measures nf1 photons using θf1 = 0, ϕf1 = 0, nf2 photons using θf2 = π 2 , ϕf2 = 0 and nf3 photons using θf3 = π 2 , ϕf3 = π 2

    Direct Inversion Tomography (DIT) The simplest method providing in principle the com- plete information of the bank state θb, ϕb is performing three measurements, one in each of the dimensions on the Bloch sphere using Nj = N/3 qubits. In detail, the forger measures nf1 photons using θf1 = 0, ϕf1 = 0, nf2 photons using θf2 = π 2 , ϕf2 = 0 and nf3 photons ...

  7. [7]

    Maximum Likelihood Method (ML) The above method has the disadvantage that the forger has to divide the quantum token into three parts and has to perform a measurement with different angles on each part. This may be technically unfeasible for some quan- tum systems like NV-centers, where the ensemble insep- arability is guaranteed by the diffraction limite...

  8. [8]

    Since we have cos θ(ML) f = af1 and sin θ(ML) f = q 1 − cos θ(ML) f 2 = q 1 − a2 f1 , we obtain ϕ(ML±) f = ±arccos   af2 − cos(θf2) af1 sin(θf2) q 1 − a2 f1  

    Otherwise, a rearrangement yields af2 − cos(θf2) cos θ(ML) f sin(θf2) sin θ(ML) f = cos ϕ(ML) f . Since we have cos θ(ML) f = af1 and sin θ(ML) f = q 1 − cos θ(ML) f 2 = q 1 − a2 f1 , we obtain ϕ(ML±) f = ±arccos   af2 − cos(θf2) af1 sin(θf2) q 1 − a2 f1   . (19) Again, one has to adapt the argument of the arccos func- tion so that it is located in th...

  9. [9]

    For this the ensemble should be split into sub-ensembles

    Bayesian Method (Ba) If the forger performs multiple measurements on the token, the outcomes of previous measurements can be used to optimize subsequent measurement settings via the Bayesian update rule. For this the ensemble should be split into sub-ensembles. Before the j-th measure- ment, the knowledge of the forger is described by a prior probability ...

  10. [10]

    One Measurement Firstly, we consider the case that the forger performs one measurement on all of the N1 = N qubits of the quantum token using the measurement angles θf1, ϕf1 and detecting nf1 photons. Using this result, the forger has to determine the angles θf, ϕf of the forged token in 13 0 π/4 π/2 3π/4 π θb 0.0 0.2 0.4 0.6 Photon Counts n nT Optimal Me...

  11. [11]

    Thus, splitting the quantum token into two parts is a more robust at- tack scenario

    Two Measurements Precisely determining both token angles with a single measurement is in general not possible. Thus, splitting the quantum token into two parts is a more robust at- tack scenario. The first part contains N1 ≥ 1 qubits and the second part N2 = N − N1 ≥ 1 qubits. Due to the freedom choice of the coordinate system, the forger again performs t...

  12. [12]

    The first part contains N1 ≥ 1 qubits, the second part N2 ≥ 1 and the third part N3 = N − N1 − N2 qubits

    Three Measurements Now the forger divides the quantum token into three parts. The first part contains N1 ≥ 1 qubits, the second part N2 ≥ 1 and the third part N3 = N − N1 − N2 qubits. Again, due to the freedom choice of the co- ordinate system, the forger performs the first measure- ment with θf1 = 0 and ϕf1 = 0, detecting nf1 photons. In the second measu...

  13. [13]

    The probability for the bank rejecting their own generated coins is less than a given limit εcb > 0

  14. [14]

    The probability for the bank to accept forged coins is less than a given limit εcf > 0. The usage of several quantum tokens within a coin allows the bank to generate coins that fulfill both conditions for any given limits εcb > 0 and εcf > 0, if the average acceptance probability of the bank generated tokens pb is bigger than the acceptance probability of...

  15. [15]

    This means, if M is large enough, there will always exist a well chosen nb

    If we have pb > p f, then the right hand side tends to ∞ with M → ∞ . This means, if M is large enough, there will always exist a well chosen nb. We obtain further 0 ≤∆p √ M − 1√ M − d ⇔ 0 ≤M − d ∆p √ M − 1 ∆p + d2 4 ∆p2 − d2 4 ∆p2 | {z } =0 and finally ⇔ 4 ∆p + d2 4 ∆p2 ≤ √ M − d 2 ∆p 2 ⇔ p 4 ∆p + d2 2 ∆p ≤ √ M − d 2 ∆p . If we have √ M − d 2 ∆p < 0, the...

  16. [16]

    Wiesner, ACM Sigact News 15, 78 (1983)

    S. Wiesner, ACM Sigact News 15, 78 (1983)

  17. [17]

    Gavinsky, 2012 IEEE 27th Conference on Computa- tional Complexity , 42 (2011)

    D. Gavinsky, 2012 IEEE 27th Conference on Computa- tional Complexity , 42 (2011)

  18. [18]

    Molina, T

    A. Molina, T. Vidick, and J. Watrous, in Theory of Quantum Computation, Communication, and Cryptog- raphy, edited by K. Iwama, Y. Kawano, and M. Murao (Springer Berlin Heidelberg, Berlin, Heidelberg, 2013) pp. 45–64

  19. [19]

    Pastawski, N

    F. Pastawski, N. Y. Yao, L. Jiang, M. D. Lukin, and J. I. Cirac, Proceedings of the Na- tional Academy of Sciences 109, 16079 (2012), https://www.pnas.org/doi/pdf/10.1073/pnas.1203552109

  20. [20]

    Georgiou and I

    M. Georgiou and I. Kerenidis, in 10th Conference on the Theory of Quantum Computation, Communication and Cryptography (TQC 2015) , Leibniz International Proceedings in Informatics (LIPIcs), Vol. 44, edited by S. Beigi and R. K¨ onig (Schloss Dagstuhl – Leibniz- Zentrum f¨ ur Informatik, Dagstuhl, Germany, 2015) pp. 92–110

  21. [21]

    S. R. Moulick and P. K. Panigrahi, Quantum Information Processing 15, 2475 (2016)

  22. [22]

    Amiri and J

    R. Amiri and J. M. Arrazola, Phys. Rev. A 95, 062334 (2017)

  23. [23]

    Bozzio, E

    M. Bozzio, E. Diamanti, and F. Grosshans, Phys. Rev. A 99, 022336 (2019)

  24. [24]

    Kumar, Cryptography 3 (2019), 10.3390/cryptogra- phy3040026

    N. Kumar, Cryptography 3 (2019), 10.3390/cryptogra- phy3040026

  25. [25]

    Horodecki and M

    K. Horodecki and M. Stankiewicz, New Journal of Physics 22, 023007 (2020)

  26. [26]

    A. Kent, D. Lowndes, D. Pital´ ua-Garc´ ıa, and J. Rarity, npj Quantum Information 8, 28 (2022)

  27. [27]

    Verfahren zum Erstellen eines Quanten-Datentokens,

    K. Singer, C. Popov, and B. Naydenov, “Verfahren zum Erstellen eines Quanten-Datentokens,” (2022)

  28. [28]

    Ensemble-Based Quantum Token Protocol Benchmarked on IBM Quantum Processors

    L. Tsunaki, B. Bauerhenne, M. Xibraku, M. E. Garcia, K. Singer, and B. Naydenov, (2024), arXiv:2412.08530 [quant-ph]

  29. [29]

    W. M. Itano, J. C. Bergquist, J. J. Bollinger, J. M. Gilli- gan, D. J. Heinzen, F. L. Moore, M. G. Raizen, and D. J. 20 IBMQ M ncT pMf0 p(opt) Mf1 p(opt) Mf2 p(fix) Mf3 1 1 0.03226 0.1409 0.3196 0.4832 9 9 3.784·10−14 2.189·10−8 3.479·10−5 0.001436 16 16 1.376·10−24 2.413·10−14 1.185·10−8 8.831·10−6 25 25 5.207·10−38 5.282·10−22 4.123·10−13 1.268·10−8 She...

  30. [30]

    Paris and J

    M. Paris and J. Rehacek, Quantum State Estimation (Springer, 2016)

  31. [31]

    Schmied, J

    R. Schmied, J. Mod. Opt. 63, 1744 (2016)

  32. [32]

    Hannemann, D

    T. Hannemann, D. Reiss, C. Balzer, W. Neuhauser, P. E. Toschek, and C. Wunderlich, Phys. Rev. A 65, 050303 (2002)

  33. [33]

    Kandala, K

    A. Kandala, K. X. Wei, S. Srinivasan, E. Magesan, S. Carnevale, G. Keefe, D. Klaus, O. Dial, and D. McKay, Phys. Rev. Lett. 127, 130501 (2021)

  34. [34]

    Bravyi, A

    S. Bravyi, A. W. Cross, J. M. Gambetta, D. Maslov, P. Rall, and T. J. Yoder, Nature 627, 778 (2024)

  35. [35]

    J. R. Glick, T. P. Gujarati, A. D. Corcoles, Y. Kim, A. Kandala, J. M. Gambetta, and K. Temme, Nature 21 Variable Physical quantity θ polar angle on the Bloch sphere ϕ azimuthal angle on the Bloch sphere θb, ϕb angles which the bank prepares and measures the token θfj , ϕfj angles used by the attacker to measure the bank token in the j-th measurement θf, ...

  36. [36]

    Quantum computing with Qiskit

    A. Javadi-Abhari, M. Treinish, K. Krsulich, C. J. Wood, J. Lishman, J. Gacon, S. Martiel, P. D. Nation, L. S. Bishop, A. W. Cross, B. R. Johnson, and J. M. Gam- betta, (2024), arXiv:2405.08810 [quant-ph]

  37. [37]

    Quantum token,

    L. Tsunaki, “Quantum token,” https://github.com/ lucas-tsunaki/quantum-token (2024)

  38. [38]

    Diqtok forge,

    B. Bauerhenne, “Diqtok forge,” https://github.com/ bauerhenne/diqtok-forge (2024)

  39. [39]

    Bagan, A

    E. Bagan, A. Monras, and R. Mu˜ noz Tapia, Phys. Rev. A 71, 062318 (2005)

  40. [40]

    Gerlach and O

    W. Gerlach and O. Stern, Zeitschrift f¨ ur Physik 9, 353 (1922)

  41. [41]

    I. I. Rabi, N. Ramsey, and J. Schwinger, Rev. Mod. Phys. 26, 167 (1954)

  42. [42]

    H. R. Schwarz and N. K¨ ockler,Numerische Mathematik , 8th ed. (Teubner, 2011)

  43. [43]

    Gruber, A

    A. Gruber, A. Dr¨ abenstedt, C. Tietz, L. Fleury, J. Wrachtrup, and C. von Borczyskowski, Science 276, 2012 (1997)

  44. [44]

    Jelezko, T

    F. Jelezko, T. Gaebel, I. Popa, A. Gruber, and J. Wrachtrup, Phys. Rev. Lett. 92, 076401 (2004)

  45. [45]

    Handl and T

    A. Handl and T. Kuhlenkasper, Einf¨ uhrung in die Statis- tik (Springer, 2018)

  46. [46]

    Jacob, K

    G. Jacob, K. Groot-Berning, S. Wolf, S. Ulm, L. Cou- turier, S. T. Dawkins, U. G. Poschinger, F. Schmidt- Kaler, and K. Singer, Phys. Rev. Lett. 117, 043001 (2016)

  47. [47]

    Beatrez, O

    W. Beatrez, O. Janes, A. Akkiraju, A. Pillai, A. Oddo, P. Reshetikhin, E. Druga, M. McAllister, M. Elo, B. Gilbert, D. Suter, and A. Ajoy, Phys. Rev. Lett. 127, 170603 (2021)

  48. [48]

    Schmidt, J

    A. Schmidt, J. Bernardoff, K. Singer, J. P. Reithmaier, and C. Popov, Phys. Status Solidi A216, 1900233 (2019)

  49. [49]

    M. M. Delgado, L. Tsunaki, S. Michaelson, M. K. Kuntu- malla, J. P. Reithmaier, A. Hoffman, B. Naydenov, and C. Popov, Diam. Relat. Mater. , 112126 (2025)

  50. [50]

    Tsunaki, A

    L. Tsunaki, A. Singh, K. Volkova, S. Trofimov, T. Preg- nolato, T. Schr¨ oder, and B. Naydenov, (2024), arXiv:2407.09411 [quant-ph]