November  2021, 15(4): 677-699. doi: 10.3934/amc.2020089

## Information set decoding in the Lee metric with applications to cryptography

 1 Faculty of Mathematics and Statistics, University of St. Gallen, Bodanstr. 6, St. Gallen, Switzerland 2 Institute of Mathematics, University of Zurich, Winterthurerstrasse 190, 8057 Zurich, Switzerland

* Corresponding author: Violetta Weger

Received  May 2019 Revised  February 2020 Published  November 2021 Early access  July 2020

We convert Stern's information set decoding (ISD) algorithm to the ring $\mathbb{Z}/4 \mathbb{Z}$ equipped with the Lee metric. Moreover, we set up the general framework for a McEliece and a Niederreiter cryptosystem over this ring. The complexity of the ISD algorithm determines the minimum key size in these cryptosystems for a given security level. We show that using Lee metric codes can substantially decrease the key size, compared to Hamming metric codes. In the end we explain how our results can be generalized to other Galois rings $\mathbb{Z}/p^s\mathbb{Z}$.

Citation: Anna-Lena Horlemann-Trautmann, Violetta Weger. Information set decoding in the Lee metric with applications to cryptography. Advances in Mathematics of Communications, 2021, 15 (4) : 677-699. doi: 10.3934/amc.2020089
Key sizes and security levels (both in bits) for GV-codes over $\mathbb Z_4$ with $n = 150$ and $d = 81$
 $k_1$ 1 2 3 $\dots$ 18 19 $\dots$ 24 25 26 best $\ell$ 0 0 0 $\dots$ 0 0 $\dots$ 0 1 2 best $v$ 4 4 4 $\dots$ 3 3 $\dots$ 2 2 2 key size 5198 5296 5390 $\dots$ 6110 6160 $\dots$ 6440 6446 6448 security level 31 31 31 $\dots$ 27 27 $\dots$ 28 28 28
