Matsui's one-dimensional Alg. 2 can be used for recovering bits of the last round key of a block cipher. In this paper a truly multidimensional extension of Alg. 2 based on established statistical theory is presented. Two possible methods, an optimal method based on the log-likelihood ratio and a χ 2-based goodness-of-fit test are compared in theory and by practical experiments on reduced round Serpent. The theory of advantage by Selçuk is generalised in multiple dimensions and the advantages and data, time and memory complexities for both methods are derived. © 2009 Springer Berlin Heidelberg.
CITATION STYLE
Hermelin, M., Cho, J. Y., & Nyberg, K. (2009). Multidimensional extension of Matsui’s algorithm 2. In Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics) (Vol. 5665 LNCS, pp. 209–227). https://doi.org/10.1007/978-3-642-03317-9_13
Mendeley helps you to discover research relevant for your work.