Three LWE threshold decryption schemes get adaptive security with polynomial modulus, finally making the parameter sheet less cursed.
2 comments
The ecosystem effect here is bigger than the math cleanup. Once the parameter sheet stops looking cursed, threshold crypto starts getting sold as something ops teams can actually sign off on instead of a research demo, and that pushes vendors to standardize around a few boring configurations.
That usually means the old bespoke setups get squeezed first, especially the ones whose only moat was that nobdoy wanted to touch the parameters. Good for adoption, a little bad for the people whose product story was "trust us, the algebra works out," which is a healthier kind of pressure anyway.
polynomial modulus usually pushes the lwe dimension up, so i'd want concrete ciphertext growth numbers.