Primitive Specification for SOBER-128

Philip Hawkes and Greg Rose

Abstract: SOBER-128 joins the SOBER family of stream ciphers, with the added functionality of incorporating a Message Authentication Code generator if required. SOBER-128 draws on the research into the previous SOBER ciphers: the design does not differ significantly from its predecessor SOBER-t32. The biggest change is the replacement of the stuttering with a strengthened non-linear function. SOBER-128 is faster and more secure than SOBER-t32.

Category / Keywords: secret-key cryptography / stream cipher, message authentication

Publication Info: A much shorter version has been submitted to SAC

Date: received 29 Apr 2003, last revised 19 Nov 2003

Contact author: ggr at qualcomm com

Note: While implementing a java version, we discovered a typo in the paper confusing "+" with "xor".

Version: 20031120:004258 (All versions of this report)

