Another view of the division property

Abstract : A new distinguishing property against block ciphers, called the division property, was introduced by Todo at Eurocrypt 2015. Our work gives a new approach to it by the introduction of the notion of parity sets. First of all, this new notion permits us to formulate and characterize in a simple way the division property of any order. At a second step, we are interested in the way of building distinguishers on a block cipher by considering some further properties of parity sets, generalising the division property. We detail in particular this approach for substitution-permutation networks. To illustrate our method, we provide low-data distinguishers against reduced-round Present. These distinguishers reach a much higher number of rounds than generic distinguishers based on the division property and demonstrate, amongst others, how the distinguishers can be improved when the properties of the linear and the Sbox layer are taken into account. At last, this work provides an analysis of the resistance of Sboxes against this type of attacks, demonstrates links with the algebraic normal form of an Sbox as well as its inverse Sbox and exhibit design criteria for Sboxes to resist such attacks.
Type de document :
Communication dans un congrès
Symmetric Cryptography (Dagstuhl Seminar 16021), Jan 2016, Dagstuhl, Germany
Liste complète des métadonnées
Contributeur : Anne Canteaut <>
Soumis le : mercredi 23 novembre 2016 - 10:36:41
Dernière modification le : jeudi 26 avril 2018 - 10:28:10


  • HAL Id : hal-01401320, version 1


Christina Boura, Anne Canteaut. Another view of the division property. Symmetric Cryptography (Dagstuhl Seminar 16021), Jan 2016, Dagstuhl, Germany. 〈hal-01401320〉



Consultations de la notice