Linear hulls with correlation zero and linear cryptanalysis of block ciphers

A Bogdanov, V Rijmen - Designs, codes and cryptography, 2014 - Springer
… Before studying the correlation of linear hulls over block ciphers… are often encountered as
parts of block ciphers, namely the XOR-… for block ciphers based on zero-correlation linear hulls. …

Linear (hull) and algebraic cryptanalysis of the block cipher PRESENT

J Nakahara, P Sepehrdad, B Zhang… - Cryptology and Network …, 2009 - Springer
… Further we can extend the linear attack to 26-round with … computed linear hulls in practice
for the original PRESENT cipher… ) of conventional linear relations based on a single linear trail. …

Block Ciphers—a survey

LR Knudsen - State of the Art in Applied Cryptography: Course on …, 1999 - Springer
… We focus on the main application of block ciphers, namely … block ciphers are linear
cryptanalysis and differential cryptanalysis. Linear cryptanalysis makes use of so-called linear hulls ie…

Generalization of Matsui's Algorithm 1 to linear hull for key-alternating block ciphers

A Röck, K Nyberg - Designs, codes and cryptography, 2013 - Springer
linear approximations of an iterated block cipher in the presence of several strong linear
While the effect of such trails in Matsui’s Algorithm 2, also called the linear hull effect, has been …

Linear cryptanalysis: Key schedules and tweakable block ciphers

T Kranz, G Leander, F Wiemer - IACR Transactions on Symmetric …, 2017 - tosc.iacr.org
… of linear cryptanalysis and provides novel insights in the areas of key schedule design and
tweakable block ciphers. We examine in a step by step manner the linear hull theorem in a …

Maximum values of total differentials and linear hulls of block symmetric ciphers

КЕ Лисицкий - Technology Audit and Production Reserves, 2014 - neliti.com
… New method for upper bounding the maximum average linear hull probability for SPNs [Text…
Improving the upper bound on the maximum average linear hull probability for Rijndael [Text…

Improved linear trails for the block cipher simon

T Ashur - Cryptology ePrint Archive, 2015 - eprint.iacr.org
… In the sequel we will show how concatenating short linear hulls forms a sort of linear trail
which we call a linear super-trail. We will first show how this can be used to improve the bias …

On linear hulls, statistical saturation attacks, PRESENT and a cryptanalysis of PUFFIN

G Leander - Annual International Conference on the Theory and …, 2011 - Springer
… attacks based on a single linear trail. We present methods on how one can, in many … the
block cipher PUFFIN (see Section 4). We present an attack on full round PUFFIN, a block cipher

More on linear hulls of PRESENT-like ciphers and a cryptanalysis of full-round EPCBC-96

S Bulygin - Cryptology ePrint Archive, 2013 - eprint.iacr.org
… we investigate the linear hull effect in the light-weight block cipher EPCBC. We give an
efficient method of computing linear hulls with high capacity. We then apply found hulls to derive …

New insights on AES-like SPN ciphers

B Sun, M Liu, J Guo, L Qu, V Rijmen - Annual International Cryptology …, 2016 - Springer
Block ciphers are among the most important primitives in constructing … linear hulls is based
on the miss-in-the-middle technique, ie, we start from the beginning and the end of the cipher, …