“…But this proved not to be feasible. On the other hand, an approach based on the Weil restriction process [17,14,2,20] produced important results: taking as input a discrete logarithm problem in an elliptic curve defined over an extension field, it is possible to transport it into the Jacobian of a curve of larger genus, but defined over a smaller base field than the initial field. Since there exist sub-exponential algorithms for discrete logarithms in Jacobians of high genus curves [1,9,3,21,6,7,10], in some cases this yields a faster attack than Pollard's Rho [27,25].…”