On the primitivity of Lai-Massey schemes

11/03/2020
by   Riccardo Aragona, et al.
0

In symmetric cryptography, the round functions used as building blocks for iterated block ciphers are often obtained as the composition of different layers providing confusion and diffusion. The study of the conditions on such layers which make the group generated by the round functions of a block cipher a primitive group has been addressed in the past years, both in the case of Substitution Permutation Networks and Feistel Networks, giving to block cipher designers the receipt to avoid the imprimitivity attack. In this paper a similar study is proposed on the subject of the Lai-Massey scheme, a framework which combines both Substitution Permutation Network and Feistel Network features. Its resistance to the imprimitivity attack is obtained as a consequence of a more general result in which the problem of proving the primitivity of the Lai-Massey scheme is reduced to the simpler one of proving the primitivity of the group generated by the round functions of a strictly related Substitution Permutation Network.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
03/22/2022

Quantum Cryptanalysis of Farfalle and (Generalised) Feistel Network

Farfalle is a permutation-based pseudo-random function which has been pr...
research
08/31/2020

Rotational analysis of ChaCha permutation

We show that the underlying permutation of ChaCha20 stream cipher does n...
research
03/02/2018

Type-Preserving Matrices and Security of Block Ciphers

We provide a new property, called Non-Type-Preserving, for a mixing laye...
research
12/14/2019

Some group-theoretical results on Feistel Networks in a long-key scenario

The study of the trapdoors that can be hidden in a block cipher is and h...
research
08/19/2020

On CCZ-equivalence of the inverse function

The inverse function x ↦ x^-1 on 𝔽_2^n is one of the most studied functi...
research
12/16/2022

Connecting Permutation Equivariant Neural Networks and Partition Diagrams

We show how the Schur-Weyl duality that exists between the partition alg...

Please sign up or login with your details

Forgot password? Click here to reset