[Resource Topic] 2015/646: Decomposition attack on SASASASAS

Welcome to the resource topic for 2015/646

Decomposition attack on SASASASAS

Authors: Alex Biryukov, Dmitry Khovratovich


We demonstrate the first attacks on the SPN ciphers with 6, 7, 8, and 9 secret layers. In particular, we show a decomposition attack on the SASASASAS scheme when the S-box size M and the block length N satisfy the condition M^2 < N (for example, 8-bit S-box and 128-bit block).

ePrint: https://eprint.iacr.org/2015/646

