• No results found

On the Existence of low-degree Equations for Algebraic Attacks

N/A
N/A
Protected

Academic year: 2020

Share "On the Existence of low-degree Equations for Algebraic Attacks"

Copied!
18
0
0

Loading.... (view fulltext now)

Full text

Loading

Figure

Fig. 1. Upper bounds for mindeg(An(CS)) for different S-boxes S : {0, 1}n → {0, 1}m

References

Related documents

Key words: Cryptanalysis, algebraic attacks, differential fault analysis, fault based attack, LED block cipher, SAT solver..

In Sec- tion 2, we recall ElimLin algorithm then, in Sec- tion 3, we introduce our method for selecting samples in an algebraic attack and show its performance using reduced