    "Analysis for the security of elliptic curve cryptosystem"

    FR-reduction is one of the solutions of elliptic curve discrete logarithm problem (ECDLP).
    Only supersingular elliptic curves or elliptic curves with trace 2 have been reported to be vulnerable for FR-reduction. In this study, we propose the explict conditions of vulnerable elliptic curves for FR-reduction, and we show that we can construct some elliptic curves with these conditions.

