On properties of additive differential probabilities of XOR
The additive differential probability of exclusive-or adp®(a,e,Y), where a,e,Y e Zn, is studied. It is used in the analysis of symmetric-key primitives that combine XOR and modular addition, such as Addition-Rotation-XOR (ARX) constructions. We focus on the maximal differentials which are helpful when constructing differential trails. It is proven that maxadp®(a,e, y) = adp®(0,Y,Y). In addition, there exist either 2 or 8 distinct pairs (a, а,в в) such that adp®(a,e,Y) = adp®(0,Y,Y)• Also, we obtain a simplified representation of adp®(0, y, Y) and formula for minadp®(0, y, y). Y
Keywords
differential cryptanalysis, modular addition, ARX, XORAuthors
Name | Organization | |
Mouha N. | Strativia company | nicky@mouha.be |
Kolomeec N. A. | Institute of Mathematics. S. L. Sobolev SB RAS | kolomeec@math.nsc.ru |
Ahtyamov D. A. | Hebrew University | akhtyamoff1997@gmail.com |
Sutormin I. A. | Institute of Mathematics. S. L. Sobolev SB RAS | ivan.sutormin@gmail.com |
Panferov M. A. | Novosibirsk State University | m.panferov@g.nsu.ru |
Titova K. M. | Novosibirsk State University | sitnich@gmail.com |
Bonich T. A. | Novosibirsk State University | t.bonich@g.nsu.ru |
Ishchukova E. A. | South Federal University | uaishukova@sfedu.ru |
Tokareva N. N. | Institute of Mathematics. S. L. Sobolev SB RAS; Novosibirsk State University; JetBrains Research Crypto Lab | tokareva@math.nsc.ru |
Zhantulikov B. F. | Novosibirsk State University | b.zhantulikov@g.nsu.ru |
References

On properties of additive differential probabilities of XOR | Applied Discrete Mathematics. Supplement. 2021. № 14. DOI: 10.17223/2226308X/14/7