Abstract
Miyaji, Nakabayashi and Takano have recently suggested a construction of the so-called MNT elliptic curves with low embedding degree, which are also of importance for pairing-based cryptography. We give some heuristic arguments which suggest that there are only about z1/2+ o(1) of MNT curves with complex multiplication discriminant up to z. We also show that there are very few finite fields over which elliptic curves with small embedding degree and small complex multiplication discriminant may exist (regardless of the way they are constructed).
Article PDF
Similar content being viewed by others
Avoid common mistakes on your manuscript.
Author information
Authors and Affiliations
Corresponding authors
Rights and permissions
About this article
Cite this article
Luca, F., Shparlinski, I. Elliptic Curves with Low Embedding Degree. J Cryptology 19, 553–562 (2006). https://doi.org/10.1007/s00145-006-0544-0
Received:
Published:
Issue Date:
DOI: https://doi.org/10.1007/s00145-006-0544-0