Post
Topic
Board Development & Technical Discussion
Merits 24 from 7 users
Re: Pollard's kangaroo ECDLP solver
by
Tamarindei
on 01/05/2020, 06:29:30 UTC
⭐ Merited by joniboini (10) ,Welsh (4) ,suchmoon (4) ,arulbero (3) ,ETFbitcoin (1) ,o_e_l_e_o (1) ,Heisenberg_Hunter (1)
OK i will try this.
But if you don't have a translation of -(k2-k1)/2 on the wilds (or (k2-k1)/2 on the tames), you get a worst case when the private key of P is at the end of the range.


I think there's a paper about this already:
https://www.iacr.org/archive/pkc2010/60560372/60560372.pdf

You probably need to detect frutiless cycles with this method (stuck kangaroos in a loop without distinguished points).