3 ms·
Probably not, I don't know. There's a better paper from a couple of years ago [1], which even manage to include code [2]. One of the attacks on NORX [3] was ess
by pbsd 9y ago
Probably not, I don't know. There's a better paper from a couple of years ago [1], which even manage to include code [2]. One of the attacks on NORX [3] was essentially exploiting a bigger-than-expected invariant subspace, it might be easier to get the gist of it that way.
By the way, I have the feeling that these attacks are more the consequence of these sort of designs becoming more popular than any particular breakthrough in cryptanalysis. For example, the symmetry properties of the AES round were already well known long ago, but it wasn't until people started taking the AES round and building primitives out of it without adding symmetry-breaking constants that this became a problem.
[1] https://eprint.iacr.org/2015/068 https://eprint.iacr.org/2015/068
[2] http://invariant-space.gforge.inria.fr/ http://invariant-space.gforge.inria.fr/
[3] http://dx.doi.org/10.13154/tosc.v2017.i1.156-174 http://dx.doi.org/10.13154/tosc.v2017.i1.156-174