skip to main content
10.1145/191177.191206acmconferencesArticle/Chapter ViewAbstractPublication PagesccsConference Proceedingsconference-collections
Article
Free access

The design of substitution-permutation networks resistant to differential and linear cryptanalysis

Published: 02 November 1994 Publication History

Abstract

In this paper we examine a class of product ciphers referred to as substitution-permutation networks. We investigate the resistance of these cryptographic networks to two important attacks: differential cryptanalysis and linear cryptanalysis. In particular, we develop upper bounds on the differential characteristic probability and on the probability of a linear approximation as a function of the number of rounds of substitutions. Further, it is shown that using large S-boxes with good diffusion characteristics and replacing the permutation between rounds by an appropriate linear transformation is effective in improving the cipher security in relation to these two attacks.

References

[1]
H. Feistel, '~ryptography and computer privacy," Scientific American, vol. 228, no. 5, pp. 15--23, 1973.
[2]
H. Feistel, W. A. Notz, and J. L. Smith, "Some cryptographic techniques for machine-to-machine dam communications," Proceedings of the IEEE, vol. 63, no. 11, pp. 1545-1554, 1975.
[3]
C. E. Shannon, "Communication theory of secrecy systems," Bell System Technical Journal, vol. 28, pp. 656-715, 1949.
[4]
"National Bureau of Standards - Data Encryption Standard," Federal Information Processing Standard Publication 46, 1977.
[5]
E. Biham and A. Shamir, "Differential cryptanalysis of DES-like cryptosystems," Journal of Cryptology, vol. 4, no. 1, pp. 3-72, 1991.
[6]
M. Matsui, "Linear cryptanalysis melhod for DES cipher," Advances in Cryptology: Proceedings of EUROCRYPT '93, Springer-Verlag, Berlin, pp. 386- 397, 1994.
[7]
K. Nybcrg, "On the construction of highly nonlinear lw.xmutations," Advances in Cryptology: Proceedings of EUROCRYPT '92, Springer-Verlag, Berlin, pp. 92- 98, 1992.
[8]
E. Biham and A. Shamir, "Diffexential cryptanalysis of FEAL and N-Hash," Advances in Cryptology: Proceedings of EUROCRYPT '91, Springer-Verlag, Berlin, pp. 1-16, 199 I.
[9]
E. Biham and A. Shamir, "Differential crypumalysis of Snefru, Khafre, REIX3C-II, LOKI, and Lucifer," Advances in Cryptology: Proceedings of CRYPTO '91, Springer-Verlag, Berlin, pp. 156-171, 1992.
[10]
E. Biham and A. Shamir, "Diffe.re~tial cryptanalysis of the full 16-round DES," Advances in Cryptology: Proceedings of CRYPTO '92, Springer-Verlag, Berlin, pp. 487-496, 1993.
[11]
L. J. O'Connor, "On the distribution of cltaracteristics in bijective mappings," Admnces in Cryptology: Proceedings of EUROCRYPT '93, Springer-Verlag, Berlin, pp. 360-370, 1994.
[12]
E. F. Brk:kell, J. H. Moore, and M. R. Purtill, "Structur~ in the S-boxes of DES," Advances in Cryptology: Proceedings of CRYPTO '86, Springer- Verlag, Berlin, pp. 3-8, 1987.
[13]
K. Nyberg, "Differentially uniform mappings for cryptography," Advances in Cryptology: Proceedings of EUROCRYPT '93, Springer-Vexlag, Berlin, pp. 55-64, 1994.
[14]
L. O'Connor, An Analysis of Product Ciphers Based On the Properties of Boolean Functions. PhD thesis, University of Waterloo, Canada, 1992.

Cited By

View all

Recommendations

Comments

Information & Contributors

Information

Published In

cover image ACM Conferences
CCS '94: Proceedings of the 2nd ACM Conference on Computer and communications security
November 1994
293 pages
ISBN:0897917324
DOI:10.1145/191177
Permission to make digital or hard copies of all or part of this work for personal or classroom use is granted without fee provided that copies are not made or distributed for profit or commercial advantage and that copies bear this notice and the full citation on the first page. Copyrights for components of this work owned by others than ACM must be honored. Abstracting with credit is permitted. To copy otherwise, or republish, to post on servers or to redistribute to lists, requires prior specific permission and/or a fee. Request permissions from [email protected]

Sponsors

Publisher

Association for Computing Machinery

New York, NY, United States

Publication History

Published: 02 November 1994

Permissions

Request permissions for this article.

Check for updates

Qualifiers

  • Article

Conference

CCS94
Sponsor:

Acceptance Rates

CCS '94 Paper Acceptance Rate 31 of 70 submissions, 44%;
Overall Acceptance Rate 1,261 of 6,999 submissions, 18%

Upcoming Conference

CCS '25

Contributors

Other Metrics

Bibliometrics & Citations

Bibliometrics

Article Metrics

  • Downloads (Last 12 months)81
  • Downloads (Last 6 weeks)18
Reflects downloads up to 21 Jan 2025

Other Metrics

Citations

Cited By

View all

View Options

View options

PDF

View or Download as a PDF file.

PDF

eReader

View online with eReader.

eReader

Login options

Media

Figures

Other

Tables

Share

Share

Share this Publication link

Share on social media