Paper 2025/2333

Analysis of Diffusion Properties in Generalized Feistel Ciphers under Multidimensional Linear Cryptanalysis

Betül Askin Özdemir, KU Leuven
Vincent Rijmen, KU Leuven
Abstract

This paper presents a unified framework for generic attacks on Generalized Feistel Ciphers, with a primary focus on Type 1, Type 2, and unbalanced contracting (U-Type 1) Feistel constructions with non-invertible round functions. In recent work, authors reveal a class of vulnerabilities exploitable via key independent multidimensional linear trails for Feistel Ciphers, yielding efficient generic distinguishing and key-recovery attacks. We extend the extended work by formalizing the application of generic multidimensional linear cryptanalysis to Generalized Feistel Ciphers. In this way, we improve upon existing results by extending the maximum number of rounds for the generic distinguishing attack to $t^2 + 2t - 1$ for Type 1 and U-Type 1, and to $2t + 3$ for Type 2. Moreover, we have the maximum number of rounds for generic key recovery attacks on (U)-Type 1 as $t^2+3t-2$ and Type 2 as $4t$. To the best of our knowledge, these findings yield the best results for the maximum number of rounds in key recovery attacks on the corresponding GFC. We further demonstrate the branch-permutation-independence of these attacks, proving that changing internal permutations does not affect the attack applicability, complexities or the maximum number of rounds for generic attacks. The effectiveness of our attacks is validated through experiments on the first-round AES candidate CAST-256 and the MPC-friendly block cipher GMiMC. Both theoretical and experimental results confirm that our proposed branch-permutation-independent generic attacks enhance the maximum number of rounds for generic attacks for GFC and reduce complexity across various interesting cases.

Metadata
Available format(s)
PDF
Category
Secret-key cryptography
Publication info
Published by the IACR in TOSC 2026
Keywords
Generic AttackMultidimensional Linear CryptanalysisGeneralized Feistel CiphersDiffusion PropertyCAST-256GMiMC
Contact author(s)
askinbetul @ gmail com
vincent rijmen @ esat kuleuven be
History
2026-04-12: last of 2 revisions
2025-12-29: received
See all versions
Short URL
https://ia.cr/2025/2333
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2025/2333,
      author = {Betül Askin Özdemir and Vincent Rijmen},
      title = {Analysis of Diffusion Properties in Generalized Feistel Ciphers under Multidimensional Linear Cryptanalysis},
      howpublished = {Cryptology {ePrint} Archive, Paper 2025/2333},
      year = {2025},
      url = {https://eprint.iacr.org/2025/2333}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.