Cryptology ePrint Archive: Report 2015/711

Construction of Lightweight S-Boxes using Feistel and MISTY structures (Full Version)

Anne Canteaut and Sébastien Duval and Gaëtan Leurent

Abstract: The aim of this work is to find large S-Boxes, typically operating on 8 bits, having both good cryptographic properties and a low implementation cost. Such S-Boxes are suitable building-blocks in many lightweight block ciphers since they may achieve a better security level than designs based directly on smaller S-Boxes. We focus on S-Boxes corresponding to three rounds of a balanced Feistel and of a balanced MISTY structure, and generalize the recent results by Li and Wang on the best differential uniformity and linearity offered by such a construction. Most notably, we prove that Feistel networks supersede MISTY networks for the construction of 8-bit permutations. Based on these results, we also provide a particular instantiation of an 8-bit permutation with better properties than the S-Boxes used in several ciphers, including Robin, Fantomas or CRYPTON.

Category / Keywords: secret-key cryptography / S-Box, Feistel network, MISTY network, Lightweight block-cipher

Original Publication (with major differences): SAC 2015

Date: received 16 Jul 2015

Contact author: gaetan leurent at inria fr

Available format(s): PDF | BibTeX Citation

Version: 20150718:125444 (All versions of this report)

Short URL:

Discussion forum: Show discussion | Start new discussion

[ Cryptology ePrint archive ]