Paper 2013/526

Differential and Linear Cryptanalysis of Reduced-Round Simon

Farzaneh Abed, Eik List, Stefan Lucks, and Jakob Wenzel

Abstract

This paper presents differential attacks of round-reduced versions of Simon with up to 18/32, 19/36, 25/44, 35/54, and 46/72 rounds for the 32-, 48-, 64-, 96-, and 128-bit versions, respectively. Furthermore, we consider in brief related-key rectangle, impossible-differential, and also linear attacks. While all our attacks are completely academic, they demonstrate the drawback of the aggressive optimizations in Simon.

Metadata
Available format(s)
PDF
Category
Secret-key cryptography
Publication info
Preprint.
Keywords
Differential cryptanalysisblock cipherlightweightSimon
Contact author(s)
farzaneh abed @ uni-weimar de
eik list @ uni-weimar de
stefan lucks @ uni-weimar de
jakob wenzel @ uni-weimar de
History
2013-10-09: last of 3 revisions
2013-08-30: received
See all versions
Short URL
https://ia.cr/2013/526
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2013/526,
      author = {Farzaneh Abed and Eik List and Stefan Lucks and Jakob Wenzel},
      title = {Differential and Linear Cryptanalysis of Reduced-Round Simon},
      howpublished = {Cryptology ePrint Archive, Paper 2013/526},
      year = {2013},
      note = {\url{https://eprint.iacr.org/2013/526}},
      url = {https://eprint.iacr.org/2013/526}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.