“Guessing Bits: Improved Lattice Attacks on (EC)DSA With Nonce Leakage”. IACR Transactions on Cryptographic Hardware and Embedded Systems, vol. 2022, no. 1, Nov. 2021, pp. 391-13, https://doi.org/10.46586/tches.v2022.i1.391-413.