Searcharxiv⌕ Search

arXiv · 2609.34413

Quantum Security of XOR of Permutations via Fourier Analysis

Abstract

The XOR of two or more independent random permutations (XoP) is the prototypical pseudorandom function built from permutations achieving security beyond the birthday bound. The classical security of the XoP construction is well established, but its security against quantum attacks that query XoP in superposition has remained widely open. We prove that the XOR of $r\ge 2$ random permutations over $\{0,1\}^n$ is indistinguishable from a random function by any $q$-query quantum algorithm with advantage \[O\left(\min\left\{\frac{q^3}{2^{rn}},\frac{q^{1.5}}{2^{(r-0.5)n}},\frac{1}{2^{(r-1.5)n}}\right\}\right)\] for all $q\ll 2^n$. In particular, XoP remains secure throughout the entire query range, far beyond the $2^{n/3}$ bound due to quantum collision finding attacks. This is the first construction from permutations that achieves the quantum version of the beyond birthday bound security. We also present several heuristic attacks suggesting the tightness of our bounds in ranges $q\le 2^{n/2}$ and $\approx 2^n$. We use a Fourier-analytic variant of the polynomial method: the advantage of any $q$-query quantum algorithm is controlled by the Fourier components of degree at most $2q$, or by $2q$ input-output data of the construction. The norms of most components are bounded well, proving the bound $2^{-(r-3/2)n}$. The norm of low-degree components turn out to be too large for the bounds $q^3/2^{rn}$ and $q^{1.5}/2^{(r-0.5)n}$. We reinterpret these low-degree components as (sums of) advantages of the other problems. For example, the degree-2 and degree-4 terms are interpreted as the advantages against random functions with and without \emph{planted collisions}, which in turn are bounded using Zhandry's small-range distributions. Along the way, we prove a new bound for the small-range indistinguishability for (ironically) large ranges, which is of independent interest.

Explore related subjects

Keep this discovery

Explore connections, maps & timelines

BibTeXRIS

Wonseok Choi, Minki Hhan, Junyoung Jang. 2026-09-28. Quantum Security of XOR of Permutations via Fourier Analysis. https://arxiv.org/abs/2609.34413

Cite the original work for its findings. Save a collection to share your selection of sources.

KEEP EXPLORING

Related papers

Preparation of Hamming-Weight-Preserving Quantum States with Log-Depth Quantum Circuits

Hamming-Weight-Preserving (HWP) states, $\vertψ_{\mathrm{H}}\rangle=\sum_{\mathrm{HW}(x)=k}α_x\vert x\rangle$, represent a fundamental class of quantum states on $n$ qubits with fixed excitation number $k$, playing a pivotal role in quantum simulation, machine learning, and optimization, with prominent examples including the Bethe eigenstates of integrable models and Configuration Interaction states. However, existing preparation methodologies typically rely on sequential architectures whose depth scales linearly with the subspace dimension, whereas practical deployment on realistic quantum hardware demands shallow circuits to mitigate decoherence. In this work, we present quantum circuits that achieve the information theoretic limit of depth logarithmic in the number of populated computational basis states while maintaining asymptotically optimal size. Specifically, for general HWP states, we provide a construction that matches the lower bounds of $Θ(\log \binom{n}{k})$ depth and $Θ(\binom{n}{k})$ size. Furthermore, we propose a resource efficient scheme utilizing only $O(\log k)$ ancillary qubits. For the $k=2$ case, where HWP states naturally admit a graph representation, we show that states whose support graphs are trees or grids admit ancilla free preparation with $Θ(\log n)$ depth and $Θ(m)$ size. Overall, our work provides logarithmic depth state preparation algorithms across various regimes while establishing a connection between quantum state synthesis and Krawtchouk polynomials.

quant-ph↗

Matrix-product-state-assisted variational Gibbs-state preparation

Evaluating the von Neumann entropy is a central challenge in variational Gibbs-state preparation. We introduce and benchmark matrix-product-state (MPS) assistance for classically evaluating and optimizing the purification circuits without full-statevector storage, examining how circuit architecture affects both thermal-state accuracy and the computational resources required. Comparisons on four- and six-spin transverse-field Ising and XXZ chains reveal complementary strengths: a thermofield-double ansatz performs better at high temperature, whereas a contiguous hardware-efficient ansatz (HEA) performs better on cooling. We identify a layer-dependent entropy ceiling in the contiguous HEA and compare it with an interleaved architecture whose entropy capacity is set solely by the ancilla qubit count. MPS-based benchmarks on 10 x 1, 20 x 1, 3 x 3, and 4 x 4 transverse-field Ising systems show that the tested interleaved circuits generally lower the free-energy errors and improve thermal observables. However, greater entropy capacity and lower free energy do not guarantee improvement in every observable. The architectures also differ in classical cost: contiguous registers permit entropy evaluation at a single MPS bond, whereas the interleaved arrangement requires a dense entropy calculation that scales exponentially with the number of ancillas. These benchmarks connect the accuracy of MPS-assisted Gibbs-state preparation to circuit capacity, optimization, and the tractability of energy and entropy evaluation.

quant-ph↗

A Unified Error Correction Code for Universal Quantum Computing with Identical Particles

We present a universal fault-tolerant quantum computing architecture based on identical particle qubits (IPQs), where we find that the first-order IPQ - bath interaction fundamentally differs from the conventional first-order qubit-bath interaction. This key distinction necessitates a redesign of existing strategies to fight decoherence. We propose that the simplest quantum error correction code can be realized directly within the physical qubit, provided that conventional correction and restoration are generalized beyond unitary operations to employ physically implementable reversal operations -- naturally placing logical and physical qubits on equal footing. We further demonstrate that dynamical decoupling (DD) remains effective within this unified framework, and that a decoherence-free subspace (DFS) -- like structure emerges. Unlike previous approximate treatments, our analytically solvable IPQ-Bath model enables rigorous testing of these strategies, with numerical simulations validating their effectiveness.

quant-ph↗