\backcite {mceliece1978}{{1}{1}{chapter.1}} \backcite {menezes1996handbook}{{1}{1}{chapter.1}} \backcite {overbeck2009code}{{1}{1}{chapter.1}} \backcite {berlekamp1978inherent}{{1}{1}{chapter.1}} \backcite {bernstein2009post}{{1}{1}{chapter.1}} \backcite {arora2009computational}{{1}{1}{chapter.1}} \backcite {rsa1978rsa}{{1}{1}{chapter.1}} \backcite {bernstein2013mcbits}{{1}{1}{chapter.1}} \backcite {mceliece1978}{{1}{1}{chapter.1}} \backcite {courtois2001achieve}{{1}{1}{chapter.1}} \backcite {rsa1978rsa}{{1}{1}{chapter.1}} \backcite {miller1986ecc}{{1}{1}{chapter.1}} \backcite {shor1997poly}{{1}{1}{chapter.1}} \backcite {arora2009computational}{{1}{1}{chapter.1}} \backcite {grover1996fast}{{1}{1}{chapter.1}} \backcite {bogdanov2006average}{{1}{1}{chapter.1}} \backcite {impagliazzo1995personal}{{1}{1}{chapter.1}} \backcite {chen2016report}{{1}{1}{chapter.1}} \backcite {bernstein2009post}{{1}{1}{chapter.1}} \backcite {mceliece1978}{{1}{1}{chapter.1}} \backcite {niederreiter1986knapsack}{{1}{1}{chapter.1}} \backcite {kobara2001semantically}{{2}{1}{chapter.1}} \backcite {bellare1998relations}{{2}{1}{chapter.1}} \backcite {goppa1970new}{{2}{1}{chapter.1}} \backcite {berlekamp1973goppa}{{2}{1}{chapter.1}} \backcite {faugere2013distinguisher}{{2}{1}{chapter.1}} \backcite {gaborit2005shorter}{{2}{1}{chapter.1}} \backcite {berger2009reducing}{{2}{1}{chapter.1}} \backcite {shokrollahi2000using}{{2}{1}{chapter.1}} \backcite {misoczki2009compact}{{2}{1}{chapter.1}} \backcite {otmani2010cryptanalysis}{{2}{1}{chapter.1}} \backcite {faugere2010algebraic}{{2}{1}{chapter.1}} \backcite {faugere2016structural}{{2}{1}{chapter.1}} \backcite {misoczki2013mdpc}{{2}{1}{chapter.1}} \backcite {augot16initial}{{2}{1}{chapter.1}} \backcite {stehle2011making}{{2}{1}{chapter.1}} \backcite {hoffstein1998ntru}{{2}{1}{chapter.1}} \backcite {guo2016key}{{2}{1}{chapter.1}} \backcite {hall1999reaction}{{2}{1}{chapter.1}} \backcite {guo2016key}{{3}{1.2}{section.1.2}} \backcite {guo2016key}{{3}{1.3}{section.1.3}} \backcite {fabvsivc2017reaction}{{3}{1.3}{section.1.3}} \backcite {rossi2017side}{{3}{1.3}{section.1.3}} \backcite {chou2016qcbits}{{3}{1.3}{section.1.3}} \backcite {paiva2018improving}{{4}{1.4}{section.1.4}} \backcite {misoczki2013mdpc}{{5}{2.1}{section*.3}} \backcite {shannon1948mathematical}{{6}{2.2}{section.2.2}} \backcite {berlekamp1978inherent}{{7}{2.2}{theorem.2.2.5}} \backcite {mceliece1978}{{7}{2.2}{section*.6}} \backcite {goppa1970new}{{7}{2.2}{section*.6}} \backcite {berlekamp1973goppa}{{7}{2.2}{section*.6}} \backcite {patterson1975algebraic}{{8}{2.2}{section*.6}} \backcite {bernstein2013mcbits}{{8}{2.2}{section*.6}} \backcite {bernstein2009post}{{8}{2.2}{section*.6}} \backcite {bernstein2008attacking}{{8}{2.2}{section*.6}} \backcite {faugere2013distinguisher}{{8}{2.2}{section*.6}} \backcite {gallager1962low}{{8}{2.2}{section*.7}} \backcite {ryan2009channel}{{8}{2.2}{section*.7}} \backcite {gallager1962low}{{8}{2.2.7}{theorem.2.2.7}} \backcite {ryan2009channel}{{9}{2.2}{theorem.2.2.10}} \backcite {guo2016key}{{9}{2.2}{theorem.2.2.10}} \backcite {gallager1962low}{{9}{2.2}{theorem.2.2.10}} \backcite {ryan2009channel}{{9}{2.2}{theorem.2.2.10}} \backcite {ryan2009channel}{{9}{2.2}{theorem.2.2.10}} \backcite {maurich2015implementing}{{9}{2.2}{theorem.2.2.10}} \backcite {gallager1962low}{{9}{2.2}{theorem.2.2.10}} \backcite {guo2016key}{{9}{2.2}{theorem.2.2.10}} \backcite {huffman2010fundamentals}{{9}{2.2}{theorem.2.2.10}} \backcite {huffman2010fundamentals}{{10}{1}{algocf.1}} \backcite {Des77dataencryption}{{12}{2.3}{section*.10}} \backcite {daemen2013design}{{12}{2.3}{section*.10}} \backcite {diffie1976new}{{12}{2.3}{section*.10}} \backcite {rsa1978rsa}{{12}{2.3}{section*.10}} \backcite {miller1986ecc}{{12}{2.3}{section*.10}} \backcite {galbraith2012mathematics}{{12}{2.3.1}{theorem.2.3.1}} \backcite {diffie1976new}{{12}{4}{Hfootnote.4}} \backcite {arora2009computational}{{14}{2.3}{Item.14}} \backcite {rsa1978rsa}{{14}{2.3}{figure.caption.12}} \backcite {agrawal2004primes}{{14}{2.3}{figure.caption.12}} \backcite {rsa1978rsa}{{15}{2.3}{figure.caption.12}} \backcite {miller1986ecc}{{15}{2.3}{figure.caption.12}} \backcite {shor1997poly}{{15}{2.3}{figure.caption.12}} \backcite {chen2016report}{{15}{2.3}{figure.caption.12}} \backcite {goldwasser1984probabilistic}{{15}{2}{Item.16}} \backcite {dolev2003nonmalleable}{{16}{3}{Item.17}} \backcite {naor1990public}{{16}{2}{Item.19}} \backcite {rackoff1991non}{{16}{3}{Item.20}} \backcite {guo2016key}{{16}{2.3}{Item.20}} \backcite {bellare1998relations}{{16}{2.3}{Item.20}} \backcite {bellare1998relations}{{17}{2.3.2}{figure.caption.14}} \backcite {mceliece1978}{{17}{2.4}{section.2.4}} \backcite {menezes1996handbook}{{17}{2.4}{section.2.4}} \backcite {goldwasser1984probabilistic}{{17}{2.4}{section.2.4}} \backcite {rsa1978rsa}{{17}{2.4}{section.2.4}} \backcite {miller1986ecc}{{17}{2.4}{section.2.4}} \backcite {goppa1970new}{{17}{2.4}{section.2.4}} \backcite {berlekamp1973goppa}{{17}{2.4}{section.2.4}} \backcite {bernstein2013mcbits}{{17}{2.4}{section.2.4}} \backcite {bernstein2013mcbits}{{17}{2.4.1}{table.caption.15}} \backcite {berlekamp1978inherent}{{18}{2.4}{Item.35}} \backcite {overbeck2009code}{{18}{2.4}{Item.35}} \backcite {faugere2013distinguisher}{{18}{2.4}{Item.35}} \backcite {prange1962use}{{18}{2.4}{Item.35}} \backcite {prange1962use}{{19}{2.4}{Item.35}} \backcite {lee1988observation}{{19}{2.4}{Item.35}} \backcite {stern1988method}{{19}{2.4}{Item.35}} \backcite {finiasz2009security}{{19}{2.4}{Item.35}} \backcite {kobara2001semantically}{{19}{2.4}{Item.35}} \backcite {pointcheval2000chosen}{{19}{2.4}{Item.35}} \backcite {fujisaki1999secure}{{19}{2.4}{Item.35}} \backcite {kobara2001semantically}{{19}{2.4}{Item.35}} \backcite {bellare1993random}{{19}{2.4}{Item.35}} \backcite {kobara2001semantically}{{19}{2.4.2}{table.caption.18}} \backcite {overbeck2009code}{{19}{2.4}{table.caption.18}} \backcite {kobara2001semantically}{{20}{2}{algocf.2}} \backcite {kobara2001semantically}{{20}{3}{algocf.3}} \backcite {misoczki2013mdpc}{{21}{3}{chapter.3}} \backcite {gallager1962low}{{21}{3}{chapter.3}} \backcite {gaborit2005shorter}{{21}{3}{chapter.3}} \backcite {berger2009reducing}{{21}{3}{chapter.3}} \backcite {misoczki2009compact}{{21}{3}{chapter.3}} \backcite {faugere2010algebraic}{{21}{3}{chapter.3}} \backcite {faugere2016structural}{{21}{3}{chapter.3}} \backcite {shokrollahi2000using}{{21}{3}{chapter.3}} \backcite {shokrollahi2000using}{{21}{3}{chapter.3}} \backcite {maurich2015implementing}{{21}{3}{chapter.3}} \backcite {baldi2016soft}{{21}{3}{chapter.3}} \backcite {guo2016p}{{21}{3}{chapter.3}} \backcite {guo2016key}{{21}{3}{chapter.3}} \backcite {fabvsivc2017reaction}{{21}{3}{chapter.3}} \backcite {misoczki2013mdpc}{{21}{3.1.1}{theorem.3.1.1}} \backcite {misoczki2013mdpc}{{22}{3.1.2}{theorem.3.1.2}} \backcite {kobara2001semantically}{{22}{3.1}{equation.3.1.1}} \backcite {misoczki2013mdpc}{{22}{3.1}{equation.3.1.1}} \backcite {maurich2015implementing}{{22}{3.1}{section*.19}} \backcite {misoczki2013mdpc}{{22}{3.1}{section*.19}} \backcite {mackay1999good}{{23}{3.1}{section*.22}} \backcite {mackay1999good}{{23}{3.1}{section*.22}} \backcite {maurich2015implementing}{{23}{3.1}{section*.22}} \backcite {heyse2013smaller}{{23}{3.1}{section*.22}} \backcite {heyse2013smaller}{{23}{3.1}{section*.22}} \backcite {maurich2015implementing}{{23}{3.1}{section*.22}} \backcite {misoczki2013mdpc}{{24}{4}{algocf.4}} \backcite {guo2016key}{{25}{3.3}{table.caption.23}} \backcite {guo2016key}{{27}{4}{chapter.4}} \backcite {maurich2015implementing}{{28}{4.2}{section.4.2}} \backcite {guo2016key}{{31}{6}{algocf.6}} \backcite {Guo2016Youtube}{{32}{15}{figure.caption.26}} \backcite {reif1985depth}{{33}{15}{figure.caption.26}} \backcite {greenlaw1995limits}{{33}{15}{figure.caption.26}} \backcite {rao1987parallel}{{33}{15}{figure.caption.26}} \backcite {reinefeld1994work}{{33}{15}{figure.caption.26}} \backcite {Guo2016Youtube}{{33}{4.3.1}{table.caption.27}} \backcite {guo2016key}{{35}{5}{chapter.5}} \backcite {guo2016key}{{35}{16}{algocf.7}} \backcite {ryan2009channel}{{37}{5.2}{figure.caption.30}} \backcite {gallager1962low}{{38}{5.3}{section.5.3}} \backcite {maurich2015implementing}{{38}{5.3}{section.5.3}} \backcite {gallager1962low}{{38}{5.3}{section.5.3}} \backcite {guo2016key}{{38}{5.3}{section.5.3}} \backcite {gallager1962low}{{38}{8}{algocf.8}} \backcite {guo2016key}{{41}{6}{chapter.6}} \backcite {guo2016key}{{41}{6.1}{section.6.1}} \backcite {weisstein2008q}{{43}{6.2}{equation.6.2.1}} \backcite {guo2016key}{{44}{6.2}{equation.6.2.1}} \backcite {guo2016key}{{47}{6.3}{figure.caption.36}} \backcite {paiva2018improving}{{49}{7}{chapter.7}} \backcite {stern1988method}{{50}{7.1}{section.7.1}} \backcite {gallager1962low}{{52}{7.2}{section*.38}} \backcite {ryan2009channel}{{52}{7.2}{section*.38}} \backcite {levy1968weight}{{52}{7.2}{section*.38}} \backcite {corr1964statistical}{{52}{7.2}{section*.38}} \backcite {M4RI}{{54}{7.3}{section.7.3}}