Cryptology ePrint Archive: Report 2009/559

New Integral Distinguisher for Rijndael-256

Yuechuan Wei and Bing Sun and Chao Li

Abstract: The known 3-round distinguisher of Rijndael-256 is byte- oriented and 2^8 plaintexts are needed to distinguish 3-round Rijndael from a random permutation. In this paper, we consider the influence of the order of the plaintexts and present a new 3-round distinguisher which only needs 32 plaintexts.

Category / Keywords: secret-key cryptography / block cipher, integral attack, Rijndael-256

Date: received 13 Nov 2009, last revised 17 Nov 2009

Contact author: wych004 at 163 com

Available format(s): PDF | BibTeX Citation

Version: 20091122:033649 (All versions of this report)

Discussion forum: Show discussion | Start new discussion

[ Cryptology ePrint archive ]