Paper 2015/223

New Distinguishers for Reduced Round Trivium and Trivia-SC using Cube Testers

Anubhab Baksi, Subhamoy Maitra, and Santanu Sarkar


In this paper we experiment with cube testers on reduced round Trivium that can act as a distinguisher. Using heuristics, we obtain several distinguishers for Trivium running more than 800 rounds (maximum 829) with cube sizes not exceeding 27. In the process, we also exploit state biases that has not been explored before. Further, we apply our techniques to analyse Trivia-SC, a stream cipher proposed by modifying the parameters of Trivium and used as a building block for TriviA-ck (an AEAD scheme, which is submitted to the ongoing CAESAR competition). We obtain distinguishers till 900 rounds of Trivia-SC with a cube size of 21 only and our results refute certain claims made by the designers. These are the best results reported so far, though our work does not affect the security claims for the ciphers with full initialization rounds, namely 1152.

Available format(s)
Secret-key cryptography
Publication info
Published elsewhere. Minor revision. WCC 2015
CryptanalysisCube TesterStream CipherTriviumTrivia-SC.
Contact author(s)
subho @ isical ac in
2015-03-09: received
Short URL
Creative Commons Attribution


      author = {Anubhab Baksi and Subhamoy Maitra and Santanu Sarkar},
      title = {New Distinguishers for Reduced Round Trivium and Trivia-{SC} using Cube Testers},
      howpublished = {Cryptology ePrint Archive, Paper 2015/223},
      year = {2015},
      note = {\url{}},
      url = {}
Note: In order to protect the privacy of readers, does not use cookies or embedded third party content.