IACR Transactions on Symmetric Cryptology (Mar 2018)

Searching for Subspace Trails and Truncated Differentials

  • Gregor Leander,
  • Cihangir Tezcan,
  • Friedrich Wiemer

DOI
https://doi.org/10.13154/tosc.v2018.i1.74-100

Abstract

Read online

Grassi et al. [Gra+16] introduced subspace trail cryptanalysis as a generalization of invariant subspaces and used it to give the first five round distinguisher for Aes. While it is a generic method, up to now it was only applied to the Aes and Prince. One problem for a broad adoption of the attack is a missing generic analysis algorithm. In this work we provide efficient and generic algorithms that allow to compute the provably best subspace trails for any substitution permutation cipher.

Keywords