“…See, for example, [3,13,4,15,19,2,6,5,1,14,26] To date, all published "attacks" on Simon and Speck are of the reduced-round variety. The goal of this sort of analysis is to determine the maximal number of rounds that would be susceptible to a theoretical attack (i.e., anything better than an exhaustive key search); all block ciphers are subject to reduced-round attacks.…”