@jornfranke I encourage you to reread the article because it addresses all your objections, especially the "why did they not break a small key". I will add that the cryptography experts are actually very confident in the security of lattices. https://keymaterial.net/2025/12/13/a-very-unscientific-guide-to-the-security-of-various-pqc-algorithms/