2018
DOI: 10.1007/s11432-017-9321-7
|View full text |Cite
|
Sign up to set email alerts
|

MILP-aided bit-based division property for ARX ciphers

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1
1
1

Citation Types

0
20
0
1

Year Published

2018
2018
2023
2023

Publication Types

Select...
5
4

Relationship

1
8

Authors

Journals

citations
Cited by 21 publications
(21 citation statements)
references
References 2 publications
0
20
0
1
Order By: Relevance
“…Definition 2 (the objective function [16]). Some notations for differential are used in the model; e.g., S j denotes the activity of an s-box and the objective function is as follows.…”
Section: Constraints For Nonlinear and Linearmentioning
confidence: 99%
“…Definition 2 (the objective function [16]). Some notations for differential are used in the model; e.g., S j denotes the activity of an s-box and the objective function is as follows.…”
Section: Constraints For Nonlinear and Linearmentioning
confidence: 99%
“…Xiang et al [XZBL16] have proposed an MILP-based method to find integral distinguishers based on the division property [Tod15] and applied it to 6 lightweight block ciphers. Soon after, their approach was extended to primitives with non-bit permutation linear layers and ARX based primitives [SWW16,SWLW16]. However, their solutions were found to encompass some infeasible division trails which could affect the search results and yield shorter integral distinguishers as shown in [ZR17].…”
Section: Related Workmentioning
confidence: 99%
“…In order to overcome this bottleneck, Xiang et al transformed the searching for the BDP to Mixed Integral Linear Programming (MILP) problems at Asiacrypt 2016 [XZBL16], which had been commonly applied to search for differential and linear characteristics [MWGP11, SHW + 14, FWG + 16, CLCW19]. As a result, the BDP of ciphers with the block sizes much larger than 32 bits can be obtained efficiently, based on which improved integral attacks for many ciphers can be achieved [SWW20,FTIM17,WGR18,SWLW18]. Since then, MILP-aided automatic search techniques have become the dominant tools for finding the BDP.…”
Section: Introductionmentioning
confidence: 99%