We introduce a new property for mixing layers which guarantees protection against algebraic attacks based on the imprimitivity of the group generated by the round functions. Mixing layers satisfying this property are called non-type-preserving. Our main result is to characterize such mixing layers by providing a list of necessary and sufficient conditions on the structure of their underlying binary matrices. Then we show how several families of linear maps are non-type-preserving, including the mixing layers of AES, GOST and PRESENT. Finally we prove that the group generated by the round functions of an SPN cipher with addition modulo 2 n as key mixing function is primitive if its mixing layer satisfies this property.
Type-preserving matrices and security of block ciphers
Meneghetti, Alessio
2019-01-01
Abstract
We introduce a new property for mixing layers which guarantees protection against algebraic attacks based on the imprimitivity of the group generated by the round functions. Mixing layers satisfying this property are called non-type-preserving. Our main result is to characterize such mixing layers by providing a list of necessary and sufficient conditions on the structure of their underlying binary matrices. Then we show how several families of linear maps are non-type-preserving, including the mixing layers of AES, GOST and PRESENT. Finally we prove that the group generated by the round functions of an SPN cipher with addition modulo 2 n as key mixing function is primitive if its mixing layer satisfies this property.| File | Dimensione | Formato | |
|---|---|---|---|
|
Aragona_Meneghetti_Type_preserving_matrices.pdf
non disponibili
Descrizione: articolo scientifico
Tipologia:
Documento in Versione Editoriale
Licenza:
Copyright dell'editore
Dimensione
428.21 kB
Formato
Adobe PDF
|
428.21 kB | Adobe PDF | Visualizza/Apri Richiedi una copia |
|
1803.00965v2.pdf
accesso aperto
Tipologia:
Documento in Post-print
Licenza:
Creative commons
Dimensione
266.83 kB
Formato
Adobe PDF
|
266.83 kB | Adobe PDF | Visualizza/Apri |
I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.


