Lower Bounds on the Degree of Block Ciphers
2020Conference / Journal
Authors
Yosuke Todo Gregor Leander Baptiste Lambin Phil Hebborn
Research Hub
Research Hub A: Kryptographie der Zukunft
Research Challenges
RC 1: Cryptography against Mass Surveillance
Abstract
Only the method to estimate the upper bound of the algebraic degree on block ciphers is known so far, but it is not useful for the designer to guarantee the security. In this paper we provide meaningful lower bounds on the algebraic degree of modern block ciphers.