Paper 2019/097
Linearly equivalent S-boxes and the Division Property
Patrick Derbez, Pierre-Alain Fouque, and Baptiste Lambin
Abstract
Division property is a new cryptanalysis method introduced by Todo at Eurocrypt'15 that proves to be very efficient on block ciphers and stream ciphers.
It can be viewed as a generalization or a more precise version of integral cryptanalysis, that allows to take into account bit properties.
However, it is very cumbersome to study the propagation of a given division property through the layers of a block cipher.
Fortunately, computer-aided techniques can be used to this end and many new results have been found.
Nonetheless, we claim that the previous techniques do not consider the full search space.
Indeed, we show that even if the previous techniques fail to find a distinguisher based on the division property over a given function
Note: Revision on April 16th 2019 : More details about the S-box criteria.
Metadata
- Available format(s)
- Category
- Secret-key cryptography
- Publication info
- Preprint. MINOR revision.
- Contact author(s)
- baptiste lambin @ protonmail com
- History
- 2019-11-14: last of 3 revisions
- 2019-01-31: received
- See all versions
- Short URL
- https://ia.cr/2019/097
- License
-
CC BY
BibTeX
@misc{cryptoeprint:2019/097, author = {Patrick Derbez and Pierre-Alain Fouque and Baptiste Lambin}, title = {Linearly equivalent S-boxes and the Division Property}, howpublished = {Cryptology {ePrint} Archive, Paper 2019/097}, year = {2019}, url = {https://eprint.iacr.org/2019/097} }