Twists of elliptic curves

From HandWiki
Short description: Mathematical curves that are isomorphic over algebraic closures

In the mathematical field of algebraic geometry, an elliptic curve E over a field K has an associated quadratic twist, that is another elliptic curve which is isomorphic to E over an algebraic closure of K. In particular, an isomorphism between elliptic curves is an isogeny of degree 1, that is an invertible isogeny. Some curves have higher order twists such as cubic and quartic twists. The curve and its twists have the same j-invariant.

Applications of twists include cryptography,[1] the solution of Diophantine equations,[2][3] and when generalized to hyperelliptic curves, the study of the Sato–Tate conjecture.[4]

Quadratic twist

First assume [math]\displaystyle{ K }[/math] is a field of characteristic different from 2. Let [math]\displaystyle{ E }[/math] be an elliptic curve over [math]\displaystyle{ K }[/math] of the form:

[math]\displaystyle{ y^2 = x^3 + a_2 x^2 +a_4 x + a_6. \, }[/math]

Given [math]\displaystyle{ d\neq 0 }[/math] not a square in [math]\displaystyle{ K }[/math], the quadratic twist of [math]\displaystyle{ E }[/math] is the curve [math]\displaystyle{ E^d }[/math], defined by the equation:

[math]\displaystyle{ dy^2 = x^3 + a_2 x^2 + a_4 x + a_6. \, }[/math]

or equivalently

[math]\displaystyle{ y^2 = x^3 + d a_2 x^2 + d^2 a_4 x + d^3 a_6. \, }[/math]

The two elliptic curves [math]\displaystyle{ E }[/math] and [math]\displaystyle{ E^d }[/math] are not isomorphic over [math]\displaystyle{ K }[/math], but rather over the field extension [math]\displaystyle{ K(\sqrt{d}) }[/math]. Qualitatively speaking, the arithmetic of a curve and its quadratic twist can look very different in the field [math]\displaystyle{ K }[/math], while the complex analysis of the curves is the same; and so a family of curves related by twisting becomes a useful setting in which to study the arithmetic properties of elliptic curves.[5]

Twists can also be defined when the base field [math]\displaystyle{ K }[/math] is of characteristic 2. Let [math]\displaystyle{ E }[/math] be an elliptic curve over [math]\displaystyle{ K }[/math] of the form:

[math]\displaystyle{ y^2 + a_1 x y +a_3 y = x^3 + a_2 x^2 +a_4 x + a_6. \, }[/math]

Given [math]\displaystyle{ d\in K }[/math] such that [math]\displaystyle{ X^2+X+d }[/math] is an irreducible polynomial over [math]\displaystyle{ K }[/math], the quadratic twist of [math]\displaystyle{ E }[/math] is the curve [math]\displaystyle{ E^d }[/math], defined by the equation:

[math]\displaystyle{ y^2 + a_1 x y +a_3 y = x^3 + (a_2 + d a_1^2) x^2 +a_4 x + a_6 + d a_3^2. \, }[/math]

The two elliptic curves [math]\displaystyle{ E }[/math] and [math]\displaystyle{ E^d }[/math] are not isomorphic over [math]\displaystyle{ K }[/math], but over the field extension [math]\displaystyle{ K[X]/(X^2+X+d) }[/math].

Quadratic twist over finite fields

If [math]\displaystyle{ K }[/math] is a finite field with [math]\displaystyle{ q }[/math] elements, then for all [math]\displaystyle{ x }[/math] there exist a [math]\displaystyle{ y }[/math] such that the point [math]\displaystyle{ (x,y) }[/math] belongs to either [math]\displaystyle{ E }[/math] or [math]\displaystyle{ E^d }[/math]. In fact, if [math]\displaystyle{ (x,y) }[/math] is on just one of the curves, there is exactly one other [math]\displaystyle{ y' }[/math] on that same curve (which can happen if the characteristic is not [math]\displaystyle{ 2 }[/math]).

As a consequence, [math]\displaystyle{ |E(K)|+|E^d(K)| = 2 q+2 }[/math] or equivalently [math]\displaystyle{ t_{E^d} = - t_E }[/math], where [math]\displaystyle{ t_E }[/math] is the trace of the Frobenius endomorphism of the curve.

Quartic twist

It is possible to "twist" elliptic curves with j-invariant equal to 1728 by quartic characters;[6] twisting a curve [math]\displaystyle{ E }[/math] by a quartic twist, one obtains precisely four curves: one is isomorphic to [math]\displaystyle{ E }[/math], one is its quadratic twist, and only the other two are really new. Also in this case, twisted curves are isomorphic over the field extension given by the twist degree.

Cubic twist

Analogously to the quartic twist case, an elliptic curve over [math]\displaystyle{ K }[/math] with j-invariant equal to zero can be twisted by cubic characters. The curves obtained are isomorphic to the starting curve over the field extension given by the twist degree.

Generalization

Twists can be defined for other smooth projective curves as well. Let [math]\displaystyle{ K }[/math] be a field and [math]\displaystyle{ C }[/math] be curve over that field, i.e., a projective variety of dimension 1 over [math]\displaystyle{ K }[/math] that is irreducible and geometrically connected. Then a twist [math]\displaystyle{ C' }[/math] of [math]\displaystyle{ C }[/math] is another smooth projective curve for which there exists a [math]\displaystyle{ \bar{K} }[/math]-isomorphism between [math]\displaystyle{ C' }[/math] and [math]\displaystyle{ C }[/math], where the field [math]\displaystyle{ \bar{K} }[/math] is the algebraic closure of [math]\displaystyle{ K }[/math].[4]

Examples

References

  1. Bos, Joppe W.; Halderman, J. Alex; Heninger, Nadia; Moore, Jonathan; Naehrig, Michael; Wustrow, Eric (2014). "Elliptic Curve Cryptography in Practice". in Christin, Nicolas; Safavi-Naini, Reihaneh. Financial Cryptography and Data Security. Lecture Notes in Computer Science. 8437. Berlin, Heidelberg: Springer. pp. 157–175. doi:10.1007/978-3-662-45472-5_11. ISBN 978-3-662-45471-8. http://link.springer.com/10.1007/978-3-662-45472-5_11. Retrieved 2022-04-10. 
  2. Mazur, B.; Rubin, K. (September 2010). "Ranks of twists of elliptic curves and Hilbert's tenth problem" (in en). Inventiones Mathematicae 181 (3): 541–575. doi:10.1007/s00222-010-0252-0. ISSN 0020-9910. Bibcode2010InMat.181..541M. http://link.springer.com/10.1007/s00222-010-0252-0. 
  3. Poonen, Bjorn; Schaefer, Edward F.; Stoll, Michael (2007-03-15). "Twists of X(7) and primitive solutions to x2+y3=z7". Duke Mathematical Journal 137 (1). doi:10.1215/S0012-7094-07-13714-1. ISSN 0012-7094. https://projecteuclid.org/journals/duke-mathematical-journal/volume-137/issue-1/Twists-of-X7-and-primitive-solutions-to-x2y3z7/10.1215/S0012-7094-07-13714-1.full. 
  4. 4.0 4.1 Lombardo, Davide; Lorenzo García, Elisa (February 2019). "Computing twists of hyperelliptic curves" (in en). Journal of Algebra 519: 474–490. doi:10.1016/j.jalgebra.2018.08.035. Bibcode2016arXiv161104856L. https://linkinghub.elsevier.com/retrieve/pii/S0021869318305404. 
  5. Rubin, Karl; Silverberg, Alice (2002-07-08). "Ranks of elliptic curves" (in en). Bulletin of the American Mathematical Society 39 (4): 455–474. doi:10.1090/S0273-0979-02-00952-7. ISSN 0273-0979. https://www.ams.org/bull/2002-39-04/S0273-0979-02-00952-7/. 
  6. Gouvêa, F.; Mazur, B. (1991). "The square-free sieve and the rank of elliptic curves". Journal of the American Mathematical Society 4 (1): 1–23. doi:10.1090/S0894-0347-1991-1080648-7. http://www.ams.org/jams/1991-04-01/S0894-0347-1991-1080648-7/S0894-0347-1991-1080648-7.pdf.