01▲An Algebraic-Geometry Lower Bound against the ePrint:2026/1747 McEliece Key-Recovery Attack eprint.iacr.org A note proving the ePrint:2026/1747 McEliece key-recovery attack needs too many held positions for Cat 5, as math sulks.algebraic-geometrycode-basedcryptanalysiseprintmceliecepqc0 pts/dan/10 days ago/3 comments
02▲HOVER: Higher-Order Vanishing Endomorphism Recovery eprint.iacr.org HOVER speeds up HOV key recovery for Goppa codes with catalecticants, and even cracks several TII McEliece challenge keys.code-based-cryptocryptanalysiseprintgoppa-codeslinear-algebramceliecepqc0 pts/raf13/13 days ago/1 comment
03▲Extending Distinguishing to Key Recovery for Subfield Subcodes of GRS codes eprint.iacr.org Preprint turns a GRS subcode distinguisher into key recovery, with F4 Goppa tests and a binary conjecture, naturally.code-based-cryptographycryptanalysiseprintgoppa-codesgrs-codeskey-recoverymceliecepqc0 pts/evanholt/15 days ago/discuss
04▲Classic McEliece Distinguisher Is Not a Break postquantum.com New quasipolynomial distinguisher for Classic McEliece gets compared to ISD and, annoyingly, still isn't a break.code-basedcryptanalysiscrypto-agilitydecodingdistinguishersgoppa-codeshqclinkedinmceliecepqc0 pts/pavelk/22 days ago/discuss