RUS  ENG
Full version
JOURNALS // Matematicheskie Voprosy Kriptografii [Mathematical Aspects of Cryptography] // Archive

Mat. Vopr. Kriptogr., 2020 Volume 11, Issue 2, Pages 83–98 (Mi mvk323)

This article is cited in 8 papers

Linear and differential cryptanalysis: Another viewpoint

F. M. Malysheva, A. E. Trishinb

a Steklov Mathematical Institute of RAS, Moscow
b Certification Research Center LLC, Moscow

Abstract: Theorems on the exact values of advantages for linear and differential cryptanalysis are proved. The example of universal functional scheme illustrates a wide range of possible errors when the usual methods of estimation the advantages of probabilistic relations are used. It is argued that the probabilistic relations should be constructed for fixed cipher keys separately. The duality between the linear and the differential cryptanalysis is rigorously formulated. The degree of diffusion in linear medium is introduced; it is shown that its maximization should be one of the basic principles of cipher design. This is a quantitative measure of Shannon's qualitative principle that ciphers should realize transforms with high diffusion.

Key words: linear cryptanalysis, differential cryptanalysis, linear medium, block ciphers.

UDC: 519.719.2

Received 25.XI.2019

Language: English

DOI: 10.4213/mvk323



Bibliographic databases:


© Steklov Math. Inst. of RAS, 2025