{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2017:LZTZL4I2PTYE6GEPO6C3JYVR66","short_pith_number":"pith:LZTZL4I2","canonical_record":{"source":{"id":"1710.08540","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2017-10-23T22:50:17Z","cross_cats_sorted":[],"title_canon_sha256":"7286a8c8d1227575f346b592c8165747c64ef2cc07d54144fd761df6ead15222","abstract_canon_sha256":"d278a64feb3ea2435307abc5f3f6c98ab006ef06f1ffa733696c8ab2d58eb591"},"schema_version":"1.0"},"canonical_sha256":"5e6795f11a7cf04f188f7785b4e2b1f7b805156ed1e5916f2b4c254370e1c5ea","source":{"kind":"arxiv","id":"1710.08540","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1710.08540","created_at":"2026-05-18T00:32:15Z"},{"alias_kind":"arxiv_version","alias_value":"1710.08540v1","created_at":"2026-05-18T00:32:15Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1710.08540","created_at":"2026-05-18T00:32:15Z"},{"alias_kind":"pith_short_12","alias_value":"LZTZL4I2PTYE","created_at":"2026-05-18T12:31:28Z"},{"alias_kind":"pith_short_16","alias_value":"LZTZL4I2PTYE6GEP","created_at":"2026-05-18T12:31:28Z"},{"alias_kind":"pith_short_8","alias_value":"LZTZL4I2","created_at":"2026-05-18T12:31:28Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2017:LZTZL4I2PTYE6GEPO6C3JYVR66","target":"record","payload":{"canonical_record":{"source":{"id":"1710.08540","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2017-10-23T22:50:17Z","cross_cats_sorted":[],"title_canon_sha256":"7286a8c8d1227575f346b592c8165747c64ef2cc07d54144fd761df6ead15222","abstract_canon_sha256":"d278a64feb3ea2435307abc5f3f6c98ab006ef06f1ffa733696c8ab2d58eb591"},"schema_version":"1.0"},"canonical_sha256":"5e6795f11a7cf04f188f7785b4e2b1f7b805156ed1e5916f2b4c254370e1c5ea","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-18T00:32:15.716107Z","signature_b64":"OZh29dso7roPEyqTUUGRY8uhDVubokS8yqFG5TyCjTpERJwxUSIzYpw1n27FkzPF1mZj9NpTRkSrl0Dd8VJTAg==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"5e6795f11a7cf04f188f7785b4e2b1f7b805156ed1e5916f2b4c254370e1c5ea","last_reissued_at":"2026-05-18T00:32:15.715304Z","signature_status":"signed_v1","first_computed_at":"2026-05-18T00:32:15.715304Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1710.08540","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:32:15Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"ivsvj4nFN3+zBh46maw46FUweUEaFEwC+gfioZaJNYWFcHfDtpkvKMlHLZkfJmp4llKQf9lIeceQdLPsXVEdBQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-22T22:21:38.511708Z"},"content_sha256":"ebea090bef7126b37484b61f0ae93994223e4b41d5d12fcb235731809bd8b4e6","schema_version":"1.0","event_id":"sha256:ebea090bef7126b37484b61f0ae93994223e4b41d5d12fcb235731809bd8b4e6"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2017:LZTZL4I2PTYE6GEPO6C3JYVR66","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Eliminating Variables in Boolean Equation Systems","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":[],"primary_cat":"cs.CR","authors_text":"Bj{\\o}rn M{\\o}ller Greve, Gunnar Fl{\\o}ystad, H{\\aa}vard Raddum, {\\O}yvind Ytrehus","submitted_at":"2017-10-23T22:50:17Z","abstract_excerpt":"Systems of Boolean equations of low degree arise in a natural way when analyzing block ciphers. The cipher's round functions relate the secret key to auxiliary variables that are introduced by each successive round. In algebraic cryptanalysis, the attacker attempts to solve the resulting equation system in order to extract the secret key. In this paper we study algorithms for eliminating the auxiliary variables from these systems of Boolean equations. It is known that elimination of variables in general increases the degree of the equations involved. In order to contain computational complexit"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1710.08540","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:32:15Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"/ljHlK8Sx1P4ABz/o8+dLTq0hsV8OLrRE7rBror21wFqpq0Pj6ltXDCG2MHGQnzgiF0kbKKXozRKU3CPbN3LCQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-22T22:21:38.512050Z"},"content_sha256":"4e812de473eb684e6ba5767763c27fa90856d5df3ad37345d69101e8036f5fa9","schema_version":"1.0","event_id":"sha256:4e812de473eb684e6ba5767763c27fa90856d5df3ad37345d69101e8036f5fa9"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/LZTZL4I2PTYE6GEPO6C3JYVR66/bundle.json","state_url":"https://pith.science/pith/LZTZL4I2PTYE6GEPO6C3JYVR66/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/LZTZL4I2PTYE6GEPO6C3JYVR66/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-22T22:21:38Z","links":{"resolver":"https://pith.science/pith/LZTZL4I2PTYE6GEPO6C3JYVR66","bundle":"https://pith.science/pith/LZTZL4I2PTYE6GEPO6C3JYVR66/bundle.json","state":"https://pith.science/pith/LZTZL4I2PTYE6GEPO6C3JYVR66/state.json","well_known_bundle":"https://pith.science/.well-known/pith/LZTZL4I2PTYE6GEPO6C3JYVR66/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2017:LZTZL4I2PTYE6GEPO6C3JYVR66","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"d278a64feb3ea2435307abc5f3f6c98ab006ef06f1ffa733696c8ab2d58eb591","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2017-10-23T22:50:17Z","title_canon_sha256":"7286a8c8d1227575f346b592c8165747c64ef2cc07d54144fd761df6ead15222"},"schema_version":"1.0","source":{"id":"1710.08540","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1710.08540","created_at":"2026-05-18T00:32:15Z"},{"alias_kind":"arxiv_version","alias_value":"1710.08540v1","created_at":"2026-05-18T00:32:15Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1710.08540","created_at":"2026-05-18T00:32:15Z"},{"alias_kind":"pith_short_12","alias_value":"LZTZL4I2PTYE","created_at":"2026-05-18T12:31:28Z"},{"alias_kind":"pith_short_16","alias_value":"LZTZL4I2PTYE6GEP","created_at":"2026-05-18T12:31:28Z"},{"alias_kind":"pith_short_8","alias_value":"LZTZL4I2","created_at":"2026-05-18T12:31:28Z"}],"graph_snapshots":[{"event_id":"sha256:4e812de473eb684e6ba5767763c27fa90856d5df3ad37345d69101e8036f5fa9","target":"graph","created_at":"2026-05-18T00:32:15Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Systems of Boolean equations of low degree arise in a natural way when analyzing block ciphers. The cipher's round functions relate the secret key to auxiliary variables that are introduced by each successive round. In algebraic cryptanalysis, the attacker attempts to solve the resulting equation system in order to extract the secret key. In this paper we study algorithms for eliminating the auxiliary variables from these systems of Boolean equations. It is known that elimination of variables in general increases the degree of the equations involved. In order to contain computational complexit","authors_text":"Bj{\\o}rn M{\\o}ller Greve, Gunnar Fl{\\o}ystad, H{\\aa}vard Raddum, {\\O}yvind Ytrehus","cross_cats":[],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2017-10-23T22:50:17Z","title":"Eliminating Variables in Boolean Equation Systems"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1710.08540","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:ebea090bef7126b37484b61f0ae93994223e4b41d5d12fcb235731809bd8b4e6","target":"record","created_at":"2026-05-18T00:32:15Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"d278a64feb3ea2435307abc5f3f6c98ab006ef06f1ffa733696c8ab2d58eb591","cross_cats_sorted":[],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2017-10-23T22:50:17Z","title_canon_sha256":"7286a8c8d1227575f346b592c8165747c64ef2cc07d54144fd761df6ead15222"},"schema_version":"1.0","source":{"id":"1710.08540","kind":"arxiv","version":1}},"canonical_sha256":"5e6795f11a7cf04f188f7785b4e2b1f7b805156ed1e5916f2b4c254370e1c5ea","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"5e6795f11a7cf04f188f7785b4e2b1f7b805156ed1e5916f2b4c254370e1c5ea","first_computed_at":"2026-05-18T00:32:15.715304Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T00:32:15.715304Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"OZh29dso7roPEyqTUUGRY8uhDVubokS8yqFG5TyCjTpERJwxUSIzYpw1n27FkzPF1mZj9NpTRkSrl0Dd8VJTAg==","signature_status":"signed_v1","signed_at":"2026-05-18T00:32:15.716107Z","signed_message":"canonical_sha256_bytes"},"source_id":"1710.08540","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:ebea090bef7126b37484b61f0ae93994223e4b41d5d12fcb235731809bd8b4e6","sha256:4e812de473eb684e6ba5767763c27fa90856d5df3ad37345d69101e8036f5fa9"],"state_sha256":"379714d0fc0e583874058fa8124ad76afb3790dac80493a2f418f94464cdc5fb"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"hMkj3iQNHQOaTkdzZnHO7W3k07pWfa1c/f5M6WcSOi1RIq2oyXD+Nq2APNLj95xX9SHxWOPBycpWIF6VrIXCBg==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-22T22:21:38.514067Z","bundle_sha256":"1c1c40a776da54915829007a47793c81d5b0c31c49eee549b0763bd0e8ac18c5"}}