In this paper we investigate the security of 5-round AES against two different attacks in an adaptive setting. We present a practical key-recovery attack on 5-round AES with a secret s-box that requires 2 32 adaptively chosen ciphertexts, which is as far as we know a new record. In addition, we present a new and practical key-independent distinguisher for 5-round AES which requires 2 27.2 adaptively chosen ciphertexts. While the data complexity of this distinguisher is in the same range as the current best 5-round distinguisher [14], it exploits new structural properties of 5-round AES.
CITATION STYLE
Bardeh, N. G., & Rønjom, S. (2019). Practical attacks on reduced-round AES. In Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics) (Vol. 11627 LNCS, pp. 297–310). Springer Verlag. https://doi.org/10.1007/978-3-030-23696-0_15
Mendeley helps you to discover research relevant for your work.