Paper 2017/895
Linear Cryptanalysis of DES with Asymmetries
Andrey Bogdanov and Philip S. Vejre
Abstract
Linear cryptanalysis of DES, proposed by Matsui in 1993, has had a seminal impact on symmetric-key cryptography, having seen massive research efforts over the past two decades. It has spawned many variants, including multidimensional and zero-correlation linear cryptanalysis. These variants can claim best attacks on several ciphers, including PRESENT, Serpent, and CLEFIA. For DES, none of these variants have improved upon Matsui's original linear cryptanalysis, which has been the best known-plaintext key-recovery attack on the cipher ever since. In a revisit, Junod concluded that when using
Metadata
- Available format(s)
-
PDF
- Publication info
- Published by the IACR in ASIACRYPT 2017
- Keywords
- Linear cryptanalysisDESmixture modelsright-key equivalencewrong-key randomisationlinear hullmultiple linear
- Contact author(s)
-
anbog @ dtu dk
psve @ dtu dk - History
- 2017-09-18: received
- Short URL
- https://ia.cr/2017/895
- License
-
CC BY
BibTeX
@misc{cryptoeprint:2017/895, author = {Andrey Bogdanov and Philip S. Vejre}, title = {Linear Cryptanalysis of {DES} with Asymmetries}, howpublished = {Cryptology {ePrint} Archive, Paper 2017/895}, year = {2017}, url = {https://eprint.iacr.org/2017/895} }