Higher-order differential properties of Keccak and Luffa - Archive ouverte HAL Accéder directement au contenu
Communication Dans Un Congrès Année : 2011

Higher-order differential properties of Keccak and Luffa

Résumé

In this paper, we identify higher-order differential and zero-sum properties in the full Keccak-f permutation, in the Luffa v1 hash function and in components of the Luffa v2 algorithm. These structural properties rely on a new bound on the degree of iterated permutations with a nonlinear layer composed of parallel applications of a number of balanced Sboxes. These techniques yield zero-sum partitions of size 2^{1575} for the full Keccak-f permutation and several observations on the Luffa hash family. We first show that Luffa v1 applied to one-block messages is a function of 255 variables with degree at most 251. This observation leads to the construction of a higher-order differential distinguisher for the full Luffa v1 hash function, similar to the one presented by Watanabe et al. on a reduced version. We show that similar techniques can be used to find all-zero higher-order differentials in the Luffa v2 compression function, but the additional blank round destroys this property in the hash function.
Fichier principal
Vignette du fichier
fse11.pdf (253.61 Ko) Télécharger le fichier
Origine : Fichiers produits par l'(les) auteur(s)
Loading...

Dates et versions

hal-00738195 , version 1 (03-10-2012)

Identifiants

Citer

Christina Boura, Anne Canteaut, Christophe de Cannière. Higher-order differential properties of Keccak and Luffa. Fast Software Encryption - FSE 2011, Feb 2011, Lyngby, Denmark. pp.252-269, ⟨10.1007/978-3-642-21702-9_15⟩. ⟨hal-00738195⟩

Collections

INRIA INRIA2
103 Consultations
115 Téléchargements

Altmetric

Partager

Gmail Facebook X LinkedIn More