Filtered nonlinear cryptanalysis of reduced-round Serpent, and the Wrong-Key Randomization Hypothesis.
James McLaughlin and John A. Clark
Publication Info: Updated and expanded version of a paper submitted to ACISP 2013. Graphs of attack performance, and truncated differential bias tables for Serpent S2/S4^{-1} were not in the ACISP version; furthermore a memory optimisation and a more thorough analysis of the Nguyen/Wu/Wang multidimensional attack were added after the ACISP submission. Some of the material in this paper includes revisions of results from 2013/022 in light of the new work on the WKRH.

