You are looking at a specific version 20091122:033649 of this paper.
See the latest version.
Paper 2009/559
New Integral Distinguisher for Rijndael-256
Yuechuan Wei and Bing Sun and Chao Li
Abstract
The known 3-round distinguisher of Rijndael-256 is byte- oriented and 2^8 plaintexts are needed to distinguish 3-round Rijndael from a random permutation. In this paper, we consider the influence of the order of the plaintexts and present a new 3-round distinguisher which only needs 32 plaintexts.
Metadata
- Available format(s)
- Category
- Secret-key cryptography
- Publication info
- Published elsewhere. Unknown where it was published
- Keywords
- block cipherintegral attackRijndael-256
- Contact author(s)
- wych004 @ 163 com
- History
- 2009-11-22: received
- Short URL
- https://ia.cr/2009/559
- License
-
CC BY