Cryptology ePrint Archive: Report 2014/361

New Results in the Linear Cryptanalysis of DES

Igor Semaev

Abstract: Two open problems on using Matsui's Algorithm 2 with multiple linear approximations posed earlier by Biryukov, De Canni$\grave{\hbox{e}}$re and M. Quisquater at Crypto'04 are solved in the present paper. That improves the linear cryptanalysis of 16-round DES reported by Matsui at Crypto'94.

Category / Keywords: secret-key cryptography / linear cryptanalysis, multiple linear approximations, success probability, MRHS linear equations, gluing algorithm

Date: received 23 May 2014

Contact author: igor at ii uib no

Available format(s): PDF | BibTeX Citation

Version: 20140525:100219 (All versions of this report)

Short URL:

Discussion forum: Show discussion | Start new discussion

[ Cryptology ePrint archive ]