Albrecht, M. R., C. Hanser, A. Hoeller, T. Pöppelmann, F. Virdia, and A. Wallner. “Implementing RLWE-Based Schemes Using an RSA Co-Processor”. IACR Transactions on Cryptographic Hardware and Embedded Systems, vol. 2019, no. 1, Nov. 2018, pp. 169-08, doi:10.13154/tches.v2019.i1.169-208.