Iranian Society of CryptologyThe ISC International Journal of Information Security2008-204513220210701Better Sampling Method of Enumeration Solution for BKZ-Simulation17720813259110.22042/isecure.2021.225886.531ENGholam RezaMoghissiICT Department, Malek-Ashtar University of Technology, Tehran, IranAliPayandehCT Department, Malek-Ashtar University of Technology, Tehran, IranJournal Article20200408The exact manner of BKZ algorithm for higher block sizes cannot be studied by practical running, so simulation of BKZ can be used to predict the total cost and output quality of BKZ algorithm. Sampling method of enumeration solution vector v is one of the main components of designing BKZ-simulation and can be divided into two phases: sampling norm of solution vector v and sampling corresponding coefficient vectors. This paper introduces a simple and efficient idea for sampling the norm of enumeration solution v for any success probability of enumeration bounding functions, while to the best of our knowledge, no such sampling method for norm of enumeration solution is proposed in former studies. Next, this paper analyzes the structure and probability distribution of coefficient vectors (corresponding with enumeration solution v), and consequently introduces the sampling methods for these coefficient vectors which are verified by our test results, while no such a deep analysis for sampling coefficient vectors is considered in design of former BKZ-simulations. Moreover, this paper proposes an approximation for cost of enumerations pruned by optimal bounding functions.http://www.isecure-journal.com/article_132591_584d76797c42719b61d770a041296119.pdf