CryptoDB
Completion of Computation of Improved Upper Bound on the Maximum Average Linear Hull Probabilty for Rijndael
Authors: | |
---|---|
Download: | |
Abstract: | This report presents the results from the completed computation of an algorithm introduced by the authors in [11] for evaluating the provable security of the AES (Rijndael) against linear cryptanalysis. This algorithm, later named KMT2, can in fact be applied to any SPN [8]. Preliminary results in [11] were based on 43\% of total computation, estimated at 200,000 hours on our benchmark machine at the time, a Sun Ultra 5. After some delay, we obtained access to the necessary computational resources, and were able to run the algorithm to completion. In addition to the above, this report presents the results from the dual version of our algorithm (KMT2-DC) as applied to the AES. |
BibTeX
@misc{eprint-2004-12047, title={Completion of Computation of Improved Upper Bound on the Maximum Average Linear Hull Probabilty for Rijndael}, booktitle={IACR Eprint archive}, keywords={secret-key cryptography / Rijndael, AES, SPN, provable security, linear cryptanalysis, differential cryptanalysis}, url={http://eprint.iacr.org/2004/074}, note={ lkeliher@mta.ca 12481 received 4 Mar 2004}, author={Liam Keliher and Henk Meijer and Stafford Tavares}, year=2004 }