A lattice is the set of intersection points of an infinite n-dimensional grid. One of the most fundamental algorithmic problems on lattices is the shortest vector problem (SVP): given a lattice, find the shortest non-zero vector in it (i.e., the intersection points closest to the origin). We prove that the shortest vector problem is NP-hard (for randomized reductions) to approximate within some constant factor greater than 1 in any l p norm (p 1). In particular, we prove the NP-hardness of approximating SVP in the Euclidean norm l 2 within any factor less than p
|
1546
|
The Art of Computer Programming
– Knuth
- 1973
|
|
428
|
Factoring Polynomials with Rational Coefficients
– Lenstra, Lenstra, et al.
- 1982
|
|
220
|
Sphere Packings, Lattices and Groups
– Conway, Sloane
- 1988
|
|
142
|
Integer Programming with a Fixed Number of Variables
– Lenstra
- 1983
|
|
138
|
On Lovasz' lattice reduction and the nearest lattice point problem
– Babai
- 1986
|
|
121
|
The hardness of approximate optima in lattices, codes, and systems of linear equations
– Arora, Babai, et al.
- 1997
|
|
120
|
A public-key cryptosystem with worst-case/average-case equivalence
– Ajtai, Dwork
- 1997
|
|
79
|
An Algorithmic Theory of Numbers, Graphs and Convexity
– Lov'asz
- 1986
|
|
75
|
Finding a small root of a univariate modular equation
– Coppersmith
- 1996
|
|
75
|
Minkowski's Convex Body Theorem and Integer Programming
– Kannan
- 1987
|
|
75
|
Polynomial algorithms for computing the Smith and Hermite normal forms of an integer matrix
– Kannan, Bachem
- 1979
|
|
72
|
A hierarchy of polynomial time lattice basis reduction algorithms
– Schnorr
- 1987
|
|
69
|
Solving low-density subset sum problems
– Lagarias, Odlyzko
- 1985
|
|
68
|
Public-key cryptosystems from lattice reduction problems
– Goldreich, Goldwasser, et al.
- 1997
|
|
67
|
Probability of error for optimal codes in a gaussian channel
– Shannon
- 1959
|
|
62
|
On the limits of nonapproximability of lattice problems
– Goldreich, Goldwasser
- 1998
|
|
57
|
Improved low-density subset sum algorithms
– Coster, Joux, et al.
- 1992
|
|
51
|
Solving Simultaneous Modular Equations of Low Degree
– Hastad
- 1988
|
|
50
|
Korkin-Zolotarev Bases and Successive Minima of a Lattice and its Reciprocal Lattice
– Lagarias, Lenstra, et al.
- 1990
|
|
49
|
Finding a small root of a bivariate integer equation; factoring with high bits known
– Coppersmith
- 1996
|
|
44
|
Improved Algorithms for Integer Programming and Related Lattice Problems
– Kannan
- 1983
|
|
43
|
Fourier analysis of uniform random number generators
– Coveyou, Macpherson
- 1967
|
|
41
|
A polynomial time algorithm for breaking the basic Merkle-Hellman cryptosystem
– Shamir
- 1982
|
|
40
|
Approximating CVP to within almost-polynomial factors is NP-hard
– Dinur, Kindler, et al.
- 1998
|
|
40
|
Worst-case complexity bounds on algorithms for computing the canonical structure of finite abelian groups and the Hermite and Smith normal forms of an integer matrix
– Iliopoulos
- 1989
|
|
40
|
Another NP-complete problem and the complexity of computing short vectors in a lattice
– Boas
- 1981
|
|
39
|
A comparison of signalling alphabets
– Gilbert
- 1952
|
|
37
|
The computational complexity of simultaneous Diophantine approximation problems
– Lagarias
- 1985
|
|
36
|
New bounds in some transference theorems in the geometry of numbers
– Banaszczyk
- 1993
|
|
35
|
Sur les formes quadratiques
– Korkine, Zolotareff
|
|
32
|
Generating hard instances of lattice problems (extended abstract
– Ajtai
- 1996
|
|
32
|
Factoring multivariate polynomials over finite fields
– Lenstra
- 1985
|
|
31
|
How to calculate shortest vectors in a lattice
– Dieter
- 1975
|
|
31
|
Algorithmic geometry of numbers
– Kannan
- 1987
|
|
29
|
The shortest vector problem in L 2 is NP-hard for randomized reductions
– Ajtai
- 1998
|
|
29
|
An Algorithm to Generate the Basis of Solutions to Homogeneous Linear Diophantine Equations
– Huet
- 1978
|
|
28
|
Algorithms for the solution of systems of linear Diophantine equations
– Chou, Collins
- 1982
|
|
28
|
Approximating shortest lattice vectors is not harder than approximating closest lattice vectors
– Goldreich, Micciancio, et al.
- 1999
|
|
28
|
Solvability by radicals is in polynomial time
– LANDAU, MILLER
- 1985
|
|
28
|
Geometrie der zahlen
– Minkowski
- 1896
|
|
27
|
Reconstructing truncated integer variables satisfying linear congruences
– Frieze, Hastad, et al.
- 1988
|
|
24
|
Factoring Integers and Computing Discrete Logarithms via Diophantine Approximation
– Schnorr
- 1991
|
|
24
|
Capabilities of bounded discrepancy decoding
– Wyner
- 1965
|
|
23
|
On the lagarias-odlyzko algorithm for the subset sum problem
– Frieze
- 1986
|
|
22
|
Factorization of univariate integer polynomials by Diophantine approximation and an improved basis reduction algorithm
– Schönhage
- 1984
|
|
21
|
The closest packing of spherical caps in n dimensions
– Rankin
- 1955
|
|
15
|
Polynomial time algorithms in the theory of linear diophantine equations
– Frumkin
- 1977
|
|
15
|
Fast unimodular reduction: Planar integer lattices
– Yap
- 1992
|
|
14
|
A relation of primal-dual lattices and the complexity of shortest lattice vector problem
– Cai
- 1998
|
|
14
|
Eliminating decryption errors in the Ajtai-Dwork cryptosystem
– Goldreich, Goldwasser, et al.
- 1997
|