This paper introduces two better algorithms for the same problem. The first, the "Extended Rank Estimation Algorithm" (EREA), is an extension of REA using statistical sampling as a second step to increase the speed of tightening the bounds on the rank. The second, the "Polynomial Rank Outlining Algorithm" (PRO), is a new approach to computing the rank. PRO can handle a much larger number of subkeys efficiently, is easy to implement in a computer-algebra system such as Sage, and produces much tighter bounds than REA in less time.
Category / Keywords: implementation / symmetric cryptography, side-channel attacks, ranking Date: received 8 Mar 2015, last revised 2 Jul 2015 Contact author: authorcontact-pro at box cr yp to Available format(s): PDF | BibTeX Citation Version: 20150702:123823 (All versions of this report) Short URL: ia.cr/2015/221 Discussion forum: Show discussion | Start new discussion