Statistical and Algebraic Properties of DES
Not peer reviewed
MetadataShow full item record
D. Davies and S. Murphy found that there are at most 660 different probability distributions on the output from any three adjacent S-boxes after 16 rounds of DES. In this paper it is shown that there are only 72 different distributions for S-boxes 4, 5 and 6. The distributions from S-box triplets are linearly dependent and the dependencies are described. E.g. there are only 13 linearly independent distributions for S-boxes 4, 5 and 6. A coset representation of DES S-boxes which reveals their hidden linearity is studied. That may be used in algebraic attacks. S-box 4 can be represented by significantly fewer cosets than the other S-boxes and therefore has more linearity. Open cryptanalytic problems are stated.
CitationIn: Information Security and Cryptology. 11th International Conference, Inscrypt 2015, Beijing, China, November 1-3, 2015, Revised Selected Papers:93-107
Copyright 2016 Springer International Publishing Switzerland