On probabilities of r-round differences of a markov xsl block cipher with a reducible linear transformation
Round functions in XSL block ciphers consist of three layers. The first is a key addition layer; the second is a nonlinear s-box layer; the third is a linear layer. Here, for a Markov XSL block cipher with a reducible linear transformation, instead of "classical" r-round differential characteristic used in differential technique, a r-round differential characteristic defined by the sequence of invariant subspace cosets of the linear transformation is considered.
Download file
Counter downloads: 379
Keywords
алгоритм шифрования Маркова, инвариантное множество, приводимое линейное преобразование, разностная характеристика, Markov cipher, invariant set, reducible linear transformation, differential characteristicAuthors
Name | Organization | |
Pudovkina M. A. | maricap@rambler.ru |
References
Lai X., Massey J. L., and Murphy S. Markov ciphers and differential cryptanalysis // EUROCRYPT'1991. LNCS. 1991. V. 547. P. 17-38.
Standaert F. X., PiretG., Rouvroy G., et al. ICEBERG: an involutional cipher efficient for block encryption in reconfigurable hardware // FSE'2004. LNCS. 2004. V.3017. P. 279-299.
Sun Y., Wang M., Jiang S., and Jiang Q. Differential cryptanalysis of reduced-round ICEBERG // AFRICACRYPT'2012. LNCS. 2012. V. 7374. P. 155-171.
