Relating Differential Distribution Tables to Other Properties of of Substitution Boxes

نویسندگان

  • Xian-Mo Zhang
  • Yuliang Zheng
  • Hideki Imai
چکیده

Due to the success of differential and linear attacks on a large number of encryption algorithms, it is important to investigate relationships among various cryptographic, including differential and linear, characteristics of an S-box (substitution box). After discussing a precise relationship among three tables, namely the difference, auto-correlation and correlation immunity distribution tables, of an S-box, we develop a number of results on various properties of S-boxes. More specifically, we show (1) close connections among three indicators of Sboxes, (2) a tight lower bound on the sum of elements in the leftmost column of its differential distribution table, (3) a non-trivial and tight lower bound on the differential uniformity of an S-box, and (4) two upper bounds on the nonlinearity of S-boxes (one for a general, not necessarily regular, S-box and the other for a regular S-box).

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Dierential Distribution Tables and Other Properties of Substitution Boxes

Due to the success of dierential and linear attacks on a large number of encryption algorithms, it is important t o investigate relationships among the various cryptographic, including dierential and linear, characteristics of an S-box (substitution box). After discussing a precise relationship among three tables, namely the dierence, auto-correlation and correlation immunity distribution table...

متن کامل

Relating Undisturbed Bits to Other Properties of Substitution Boxes

Recently it was observed that for a particular nonzero input difference to an S-Box, some bits in all the corresponding output differences may remain invariant. These specific invariant bits are called undisturbed bits. Undisturbed bits can also be seen as truncated differentials with probability 1 for an S-Box. The existence of undisturbed bits was found in the S-Box of Present and its inverse...

متن کامل

Non-existence of Certain Quadratic S-boxes and Two Bounds on Nonlinear Characteristics of General S-boxes

Due to the success of diierential and linear attacks on a large number of encryption algorithms, it is important to investigate relationships among the various cryptographic, including diierential and linear, characteristics of an S-box (substitution box). After discussing a precise relationship among three tables, namely the diierence, auto-correlation and correlation immunity distribution tab...

متن کامل

Extended SAC: A Review on DC and SAC of 4-bit BFs and S-Boxes and a New Algorithm on DC of S-Boxes based on Various Types of SAC including the Extended Higher Order SAC

Bitwise-Xor of two 4-bit patterns is the 4-bit difference between them which carries useful information in Cryptography. The method to analyze cryptographic ciphering algorithms or 4-bit Substitution boxes (S-boxes) with 4-bit differences is known as Differential Cryptanalysis (DC). An analysis of DC of 4-bit bijective Crypto S-boxes based on Differential Distribution Table (DDT) is reviewed in...

متن کامل

Designing S-boxes for Ciphers Resistant to Differential Cryptanalysis

This paper examines recent work in the area of bent-function-based substitution boxes in order to refine the relationship between s-box construction and immunity to the differential cryptanalysis attack described by Biham and Shamir. It is concluded that m n × s-boxes, m n < , which are partially bent-function-based are the most appropriate choice for private-key cryptosystems constructed as su...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:
  • Des. Codes Cryptography

دوره 19  شماره 

صفحات  -

تاریخ انتشار 2000