Linear and differential cryptanalysis of reduced-round AES
Open Access
|Nov 2012Abstract
The subject of this paper is linear and differential cryptanalysis of two rounds of the Advanced Encryption Standard (AES) with estimation of com- plexity for three-round AES attack. Presented linear attack is based on finding highly probable linear expressions and presented differential attack is based on finding specific bitwise differences. Data complexity of described linear and diffe- rential attack is 228 and 227, respectively, where 8 bits of subkey are recovered. Minimal complexity of linear attack on three-round AES is bigger than d × 260, where d is a small constant.
Language: English
Page range: 51 - 61
Published on: Nov 13, 2012
Published by: Slovak Academy of Sciences, Mathematical Institute
In partnership with: Paradigm Publishing Services
Publication frequency: 3 issues per year
Keywords:
Related subjects:
© 2012 Lucia Lacko-Bartošová, published by Slovak Academy of Sciences, Mathematical Institute
This work is licensed under the Creative Commons License.