2022/03/04 by Xiao, Guanju, Zhou, Zijian, Deng, Yingpu +1
#FOS: Mathematics #Number Theory (math.NT)
paper · doi:10.48550/arxiv.2203.02097
It is well known that there is a one-to-one correspondence between supersingular j-invariants up to the action of Gal(\mathbbFp2/\mathbbFp) and type classes of maximal orders in Bp,∞ by Deuring's theorem. Interestingly, we establish a one-to-one correspondence between \mathbbFp-isomorphism classes of supersingular elliptic curves and primitive reduced binary quadratic forms with discriminant -p or -16p. Due to this correspondence and the fact that \mathbbFp-isogenies between elliptic curves could be represented by quadratic forms, we show that operations of these isogenies on supersingular elliptic curves over \mathbbFp are compatible with the composition of quadratic forms. Based on these results, we could reduce the security of CSIDH cryptosystem to computing this correspondence explicitly.