[Resource Topic] 2023/789: Where are the constants? New Insights On The Role of Round Constant Addition in The SymSum Distinguisher

Welcome to the resource topic for 2023/789

Title:
Where are the constants? New Insights On The Role of Round Constant Addition in The SymSum Distinguisher

Authors: Sahiba Suryawanshi, Dhiman Saha

Abstract:

The current work makes a systematic attempt to describe the effect of the relative order of round constant ( RCon) addition in the round function of an SPN cipher on its algebraic structure. The observations are applied to the SymSum distinguisher, introduced by Saha et al. in FSE 2017 which is one of the best distinguishers on the SHA3 hash function reported in literature. Results show that certain ordering (referred to as Type-LCN) of RCon makes the distinguisher less effective but it still works with some limitations. Results in the form of new SymSum distinguishers are reported on concrete Type-LCN constructions - NIST LWC competition finalist Xoodyak-Hash and its internal permutation Xoodoo. New linear structures are also reported on Xoodoo that augment the distinguisher to penetrate more rounds. Final results include SymSum distinguishers on 7 rounds of Xoodoo and 5 rounds of Xoodyak-Hash with complexity 2^128 and 2^32 , respectively. All practical distinguishers have been verified. The characterization encompassing the algebraic structure
and effect of RCon provided by the current work improves the under-
standing of SymSum in general and constitutes one of the first such result on Xoodyak-Hash and Xoodoo.

ePrint: https://eprint.iacr.org/2023/789

See all topics related to this paper.

Feel free to post resources that are related to this paper below.

Example resources include: implementations, explanation materials, talks, slides, links to previous discussions on other websites.

For more information, see the rules for Resource Topics .