J. Aumasson, S. Fischer, S. Khazaei, W. Meier, and C. Rechberger, New Features of Latin Dances: Analysis of Salsa, ChaCha, and Rumba, Fast Software Encryption, pp.470-488, 2008.

E. Biham, O. Dunkelman, and N. Keller, Enhancing differential-linear cryptanalysis, Advances in Cryptology-ASIACRYPT 2002, pp.254-266, 2002.

J. Daniel, . Bernstein, and . Salsa20, eSTREAM, ECRYPT Stream Cipher Project, 2005.

J. Daniel and . Bernstein, Response to "Slid Pairs in Salsa20 and Trivium, 2008.

J. Daniel and . Bernstein, The Salsa20 Family of Stream Ciphers, pp.84-97, 2008.

R. Arka, S. Choudhuri, and . Maitra, Differential Cryptanalysis of Salsa and ChaCha-An Evaluation with a Hybrid Model, IACR Cryptology ePrint Archive, p.377, 2016.

A. Choudhuri and S. Maitra, Significantly Improved Multi-bit Differentials for Reduced Round Salsa and Chacha, IACR Transactions on Symmetric Cryptology, vol.2016, issue.2, pp.261-287, 2017.

P. Crowley, Truncated differential cryptanalysis of five rounds of salsa20. eSTREAM, ECRYPT Stream Cipher Project, 2006.

S. Fischer, W. Meier, C. Berbain, J. Biasse, and M. J. Robshaw, Non-randomness in eSTREAM Candidates Salsa20 and TSC-4, Progress in Cryptology-INDOCRYPT 2006, pp.2-16, 2006.

T. Ishiguro, Latin Dances Revisited: New Analytic Results of Salsa20 and ChaCha, 2012.

S. Knellwolf, W. Meier, and M. Naya-plasencia, Conditional Differential Cryptanalysis of NLFSR-Based Cryptosystems, Advances in Cryptology-ASIACRYPT 2010, pp.130-145, 2010.

D. Khovratovich and I. Nikoli´cnikoli´c, Rotational Cryptanalysis of ARX, Seokhie Hong and Tetsu Iwata, pp.333-346, 2010.

H. Lipmaa and S. Moriai, Efficient Algorithms for Computing Differential Properties of Addition, Fast Software Encryption, pp.336-350, 2002.

S. Maitra, Chosen IV Cryptanalysis on Reduced Round ChaCha and Salsa, Discrete Appl. Math, vol.208, issue.C, pp.88-97, 2016.

M. Matsui, Linear cryptanalysis method for des cipher, Advances in Cryptology-EUROCRYPT '93, pp.386-397, 1994.

S. Maitra, P. Goutam, and W. Meier, Salsa20 Cryptanalysis: New Moves and Revisiting Old Styles, The 9th International Workshop on Coding and Cryptography 2015 WCC2015, Proceedings of the 9th International Workshop on Coding and Cryptography, 2015.
URL : https://hal.archives-ouvertes.fr/hal-01276506

I. Mantin and A. Shamir, A practical attack on broadcast rc4, Fast Software Encryption, pp.152-164, 2002.

D. Priemuth, -. Schmid, and A. Biryukov, Slid Pairs in Salsa20 and Trivium, Progress in Cryptology-INDOCRYPT 2008, pp.1-14, 2008.

T. Siegenthaler, Decrypting a Class of Stream Ciphers Using Ciphertext Only, IEEE Transactions on Computers, C, vol.34, pp.81-85, 1985.

Z. Shi, B. Zhang, D. Feng, and W. Wu, Improved Key Recovery Attacks on Reduced-Round Salsa20 and ChaCha, Information Security and Cryptology-ICISC 2012, pp.337-351, 2013.

Y. Tsunoo, T. Saito, H. Kubo, T. Suzaki, and H. Nakashima, Differential Cryptanalysis of Salsa20/8. eSTREAM, ECRYPT Stream Cipher Project, 2007.

V. Velichkov, N. Mouha, C. Decannì-ere, and B. Preneel, The Additive Differential Probability of ARX, Proceedings of the 18th International Conference on Fast Software Encryption, FSE'11, pp.342-358, 2011.
DOI : 10.1007/978-3-642-21702-9_20

URL : https://link.springer.com/content/pdf/10.1007%2F978-3-642-21702-9_20.pdf

, Forward Probabilistic Neutral Bits on 4 Salsa rounds, Table, vol.11