[Resource Topic] 2015/812: The Secret Structure of the S-Box of Streebog, Kuznechik and Stribob

Welcome to the resource topic for 2015/812

Title:
The Secret Structure of the S-Box of Streebog, Kuznechik and Stribob

Authors: Alex Biryukov, Léo Perrin, Aleksei Udovenko

Abstract:

The last hash function and block cipher standardized by the Russian standardization body (GOST) both use the same S-Box. It is also used by an independent CAESAR candidate. This transformation is only specified as a look up table and the reason behind its choice is unknown. We managed to reverse-engineer this S-Box and describe its unpublished structure. Our decomposition allows a much more efficient hardware implementation but the choice of the components used is puzzling from a cryptographic perspective. This extended abstract does not explain \emph{how} we found this decomposition. We will describe our process in an extended version of this paper.

ePrint: https://eprint.iacr.org/2015/812

See all topics related to this paper.

Feel free to post resources that are related to this paper below.

Example resources include: implementations, explanation materials, talks, slides, links to previous discussions on other websites.

For more information, see the rules for Resource Topics .