“…As can be seen on Figure 19, during the AddRoundTweakey step the first two rows of each tweakey are exclusive-ored together and then to the internal state. To update the tweakey arrays for the next round, each tweakey word is first modified by a cell-permutation P T , given by: [9,15,8,13,10,14,12,11,0,1,2,3,4,5,6,7] and which effect on the cell positioning is as follows: Each cell (except the ones in TK1) is then linearly modified by a LFSR, following the definitions given in Table 3. Table 3: LFSR used to update T K2 and T K3.…”