[Resource Topic] 2009/266: Pseudorandomness Analysis of the Lai-Massey Scheme

Welcome to the resource topic for 2009/266

Title:
Pseudorandomness Analysis of the Lai-Massey Scheme

Authors: Yiyuan Luo, Xuejia Lai, Zheng Gong, Zhongming Wu

Abstract:

At Asiacrypt’99, Vaudenay modified the structure in the IDEA cipher to a new scheme, which they called as the Lai-Massey scheme. It is proved that 3-round Lai-Massey scheme is sufficient for pseudorandomness and 4-round Lai-Massey scheme is sufficient for strong pseudorandomness. But the author didn’t point out whether three rounds and four rounds are necessary for the pseudorandomness and strong pseudorandomness of the Lai-Massey Scheme. In this paper we find a two round pseudorandomness distinguisher and a three-round strong pseudorandomness distinguisher, thus prove that three rounds is necessary for the pseudorandomness and four rounds is necessary for the strong pseudorandomness.

ePrint: https://eprint.iacr.org/2009/266

See all topics related to this paper.

Feel free to post resources that are related to this paper below.

Example resources include: implementations, explanation materials, talks, slides, links to previous discussions on other websites.

For more information, see the rules for Resource Topics .