1. Inverting HFE systems is quasi-polynomial for all fields;Advances in Cryptology—CRYPTO 2011,2011
2. Last fall degree, HFE, and Weil descent attacks on ECDLP;Advances in Cryptology—CRYPTO 2015
3. Summation polynomials and the discrete logarithm problem on elliptic curves;Preprint,2004
4. Notes on summation polynomials;Preprint,2015
5. Inverting HFE is quasipolynomial;Advances in Cryptology—CRYPTO,2006