Bariant, A., C. Bouvier, G. Leurent, and L. Perrin. “Algebraic Attacks Against Some Arithmetization-Oriented Primitives”. IACR Transactions on Symmetric Cryptology, vol. 2022, no. 3, Sept. 2022, pp. 73-101, doi:10.46586/tosc.v2022.i3.73-101.