[Resource Topic] 2024/1328: A Note on ARADI and LLAMA

Welcome to the resource topic for 2024/1328

Title:
A Note on ARADI and LLAMA

Authors: Roberto Avanzi, Orr Dunkelman, Shibam Ghosh

Abstract:

Recently, the NSA has proposed a block cipher called ARADI and a mode of operation called LLAMA for memory encryption applications.
In this note, we comment on this proposal, on its suitability for the intended application, and describe an attack on LLAMA that breaks confidentiality of ciphertext and allows a straightforward forgery attack breaking integrity of ciphertext (INT-CTXT) using a related-IV attack.
Both attacks have negligible complexity.

ePrint: https://eprint.iacr.org/2024/1328

See all topics related to this paper.

Feel free to post resources that are related to this paper below.

Example resources include: implementations, explanation materials, talks, slides, links to previous discussions on other websites.

For more information, see the rules for Resource Topics .