Complexity of structured totient preimage reconstruction
Determine the reconstruction complexity of the Structured Totient Preimage problem, which asks, given a shifted product x, a prime bit length λ, and a cardinality k, for any set of k distinct λ-bit primes whose shifted factors multiply to x.
References
Given $(x,\lambda,k)$, STP asks for any set of $k$ distinct $\lambda$-bit primes satisfying this product. The relation is efficiently verifiable, but its reconstruction complexity is not known.
— The Structured Totient Preimage Problem: Reconstruction, Collisions, and Cryptographic Implications
(2608.19191 - Lizama-Pérez, 19 Aug 2026) in Abstract