O. Billet and H. Gilbert, A Traceable Block Cipher, Asiacrypt '03, pp.331-346, 2003.
DOI : 10.1007/978-3-540-40061-5_21

A. Biryukov, C. Decannì-ere, A. Braeken, and B. Preneel, A Toolbox for Cryptanalysis: Linear and Affine Equivalence Algorithms, Eurocrypt' 03, pp.33-50, 2003.
DOI : 10.1007/3-540-39200-9_3

J. Ding, C. Wolf, and B. Yang, ???-Invertible Cycles for $\mathcal{M}$ ultivariate $\mathcal{Q}$ uadratic ( ${\mathcal{MQ}}$ ) Public Key Cryptography, PKC '07, pp.266-281, 2007.
DOI : 10.1007/978-3-540-71677-8_18

V. Dubois, P. Fouque, A. Shamir, and J. Stern, Practical Cryptanalysis of SFLASH, Crypto '07, 2007.
DOI : 10.1007/978-3-540-74143-5_1

URL : https://hal.archives-ouvertes.fr/inria-00556691

V. Dubois, P. Fouque, and J. Stern, Cryptanalysis of SFLASH with Slightly Modified??Parameters, Eurocrypt '07, pp.264-275, 2007.
DOI : 10.1007/978-3-540-72540-4_15

URL : https://hal.archives-ouvertes.fr/inria-00556692

V. Dubois, L. Granboulan, and J. Stern, An Efficient Provable Distinguisher for HFE, Icalp' 06, pp.156-167, 2006.
DOI : 10.1007/11787006_14

V. Dubois, L. Granboulan, and J. Stern, Cryptanalysis of HFE with Internal Perturbation, PKC' 07, pp.249-265, 2007.
DOI : 10.1007/978-3-540-71677-8_17

J. Faugère and L. Perret, Polynomial Equivalence Problems: Algorithmic and Theoretical Aspects, Eurocrypt' 06, pp.30-47, 2006.
DOI : 10.1007/11761679_3

P. A. Fouque, L. Granboulan, and J. Stern, Differential Cryptanalysis for Multivariate Schemes, Eurocrypt' 05, pp.341-353, 2005.
DOI : 10.1007/11426639_20

URL : https://hal.archives-ouvertes.fr/inria-00563961

H. Gilbert and M. Minier, Cryptanalysis of SFLASH, Eurocrypt' 02, pp.288-298, 2002.
DOI : 10.1007/3-540-46035-7_19

T. Matsumoto and H. Imai, Public Quadratic Polynomial-Tuples for Efficient Signature-Verification and Message-Encryption, Eurocrypt '88, pp.419-453, 1988.
DOI : 10.1007/3-540-45961-8_39

J. Patarin, Cryptanalysis of the Matsumoto and Imai Public Key Scheme of Eurocrypt???88, Crypto '95, pp.248-261, 1995.
DOI : 10.1007/3-540-44750-4_20

J. Patarin, Asymmetric Cryptography with a Hidden Monomial, Crypto '96, pp.45-60, 1996.
DOI : 10.1007/3-540-68697-5_4

J. Patarin, Hidden Fields Equations (HFE) and Isomorphisms of Polynomials (IP): Two New Families of Asymmetric Algorithms, Eurocrypt '96, pp.33-48, 1996.
DOI : 10.1007/3-540-68339-9_4

J. Patarin, N. Courtois, and L. Goubin, FLASH, a Fast Multivariate Signature Algorithm, CT-RSA 2001, pp.298-307, 2001.
DOI : 10.1007/3-540-45353-9_22

J. Patarin, L. Goubin, and N. Courtois, Improved algorithms for isomorphisms of polynomials, Eurocrypt '98, pp.184-200, 1998.
DOI : 10.1007/BFb0054126

A. Shamir, Efficient Signature Schemes Based on Birational Permutations, Crypto '93, pp.1-12, 1993.
DOI : 10.1007/3-540-48329-2_1

C. Wolf and B. Preneel, Equivalent Keys in HFE, C*, and Variations, Mycrypt '05, pp.33-49, 2005.
DOI : 10.1007/11554868_4

C. Wolf and B. Preneel, Taxonomy of Public Key Schemes based on the problem of Multivariate Quadratic equations, Cryptology ePrint Archive, 2005.