Abstract We present a new key exchange primitive based on the decomposition problem over noncommutative groups. Different from the key establishment schemes that rely on the decomposition problem where the problem is decomposing an element into three parts where the middle piece is known, our scheme relies on decomposing an element into three parts, all unknown. We call this problem "Triple Decomposition Problem". This seems to be a harder problem because it requires quadratic systems to be solved instead of linear systems. We discuss the new primitive over two di#erent protocols. The underlying problems in the two protocols differ slightly. We discuss
