Relating Differential Distribution Tables to Other Properties of of Substitution Boxes
نویسندگان
چکیده
Due to the success of differential and linear attacks on a large number of encryption algorithms, it is important to investigate relationships among various cryptographic, including differential and linear, characteristics of an S-box (substitution box). After discussing a precise relationship among three tables, namely the difference, auto-correlation and correlation immunity distribution tables, of an S-box, we develop a number of results on various properties of S-boxes. More specifically, we show (1) close connections among three indicators of Sboxes, (2) a tight lower bound on the sum of elements in the leftmost column of its differential distribution table, (3) a non-trivial and tight lower bound on the differential uniformity of an S-box, and (4) two upper bounds on the nonlinearity of S-boxes (one for a general, not necessarily regular, S-box and the other for a regular S-box).
منابع مشابه
Dierential Distribution Tables and Other Properties of Substitution Boxes
Due to the success of dierential and linear attacks on a large number of encryption algorithms, it is important t o investigate relationships among the various cryptographic, including dierential and linear, characteristics of an S-box (substitution box). After discussing a precise relationship among three tables, namely the dierence, auto-correlation and correlation immunity distribution table...
متن کاملRelating Undisturbed Bits to Other Properties of Substitution Boxes
Recently it was observed that for a particular nonzero input difference to an S-Box, some bits in all the corresponding output differences may remain invariant. These specific invariant bits are called undisturbed bits. Undisturbed bits can also be seen as truncated differentials with probability 1 for an S-Box. The existence of undisturbed bits was found in the S-Box of Present and its inverse...
متن کاملNon-existence of Certain Quadratic S-boxes and Two Bounds on Nonlinear Characteristics of General S-boxes
Due to the success of diierential and linear attacks on a large number of encryption algorithms, it is important to investigate relationships among the various cryptographic, including diierential and linear, characteristics of an S-box (substitution box). After discussing a precise relationship among three tables, namely the diierence, auto-correlation and correlation immunity distribution tab...
متن کاملExtended SAC: A Review on DC and SAC of 4-bit BFs and S-Boxes and a New Algorithm on DC of S-Boxes based on Various Types of SAC including the Extended Higher Order SAC
Bitwise-Xor of two 4-bit patterns is the 4-bit difference between them which carries useful information in Cryptography. The method to analyze cryptographic ciphering algorithms or 4-bit Substitution boxes (S-boxes) with 4-bit differences is known as Differential Cryptanalysis (DC). An analysis of DC of 4-bit bijective Crypto S-boxes based on Differential Distribution Table (DDT) is reviewed in...
متن کاملDesigning S-boxes for Ciphers Resistant to Differential Cryptanalysis
This paper examines recent work in the area of bent-function-based substitution boxes in order to refine the relationship between s-box construction and immunity to the differential cryptanalysis attack described by Biham and Shamir. It is concluded that m n × s-boxes, m n < , which are partially bent-function-based are the most appropriate choice for private-key cryptosystems constructed as su...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید
ثبت ناماگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید
ورودعنوان ژورنال:
- Des. Codes Cryptography
دوره 19 شماره
صفحات -
تاریخ انتشار 2000