{"id":"https://openalex.org/W2607059683","doi":"https://doi.org/10.1515/jmc-2016-0054","title":"Multiple differential-zero correlation linear cryptanalysis of reduced-round CAST-256","display_name":"Multiple differential-zero correlation linear cryptanalysis of reduced-round CAST-256","publication_year":2017,"publication_date":"2017-04-19","ids":{"openalex":"https://openalex.org/W2607059683","doi":"https://doi.org/10.1515/jmc-2016-0054","mag":"2607059683"},"language":"en","primary_location":{"id":"doi:10.1515/jmc-2016-0054","is_oa":true,"landing_page_url":"https://doi.org/10.1515/jmc-2016-0054","pdf_url":null,"source":{"id":"https://openalex.org/S100611479","display_name":"Journal of Mathematical Cryptology","issn_l":"1862-2976","issn":["1862-2976","1862-2984"],"is_oa":false,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310313990","host_organization_name":"De Gruyter","host_organization_lineage":["https://openalex.org/P4310313990"],"host_organization_lineage_names":["De Gruyter"],"type":"journal"},"license":"cc-by-nc-nd","license_id":"https://openalex.org/licenses/cc-by-nc-nd","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Journal of Mathematical Cryptology","raw_type":"journal-article"},"type":"article","indexed_in":["crossref","doaj"],"open_access":{"is_oa":true,"oa_status":"hybrid","oa_url":"https://doi.org/10.1515/jmc-2016-0054","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5068659715","display_name":"Massoud Hadian Dehkordi","orcid":"https://orcid.org/0000-0002-1239-7610"},"institutions":[{"id":"https://openalex.org/I67009956","display_name":"Iran University of Science and Technology","ror":"https://ror.org/01jw2p796","country_code":"IR","type":"education","lineage":["https://openalex.org/I67009956"]}],"countries":["IR"],"is_corresponding":true,"raw_author_name":"Massoud Hadian Dehkordi","raw_affiliation_strings":["School of Mathematics , Iran University of Science and Technology , Narmak , Tehran 16844 , Iran"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"School of Mathematics , Iran University of Science and Technology , Narmak , Tehran 16844 , Iran","institution_ids":["https://openalex.org/I67009956"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5070500934","display_name":"Roghayeh Taghizadeh","orcid":null},"institutions":[{"id":"https://openalex.org/I67009956","display_name":"Iran University of Science and Technology","ror":"https://ror.org/01jw2p796","country_code":"IR","type":"education","lineage":["https://openalex.org/I67009956"]}],"countries":["IR"],"is_corresponding":false,"raw_author_name":"Roghayeh Taghizadeh","raw_affiliation_strings":["School of Mathematics , Iran University of Science and Technology , Narmak , Tehran 16844 , Iran"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"School of Mathematics , Iran University of Science and Technology , Narmak , Tehran 16844 , Iran","institution_ids":["https://openalex.org/I67009956"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":2,"corresponding_author_ids":["https://openalex.org/A5068659715"],"corresponding_institution_ids":["https://openalex.org/I67009956"],"apc_list":{"value":1000,"currency":"EUR","value_usd":1078},"apc_paid":{"value":1000,"currency":"EUR","value_usd":1078},"fwci":0.2081,"has_fulltext":false,"cited_by_count":1,"citation_normalized_percentile":{"value":0.62202548,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":89,"max":94},"biblio":{"volume":"11","issue":"2","first_page":"55","last_page":"62"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10951","display_name":"Cryptographic Implementations and Security","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10951","display_name":"Cryptographic Implementations and Security","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11130","display_name":"Coding theory and cryptography","score":0.9976999759674072,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11017","display_name":"Chaos-based Image/Signal Encryption","score":0.994700014591217,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/block-cipher","display_name":"Block cipher","score":0.9074779748916626},{"id":"https://openalex.org/keywords/linear-cryptanalysis","display_name":"Linear cryptanalysis","score":0.7582060098648071},{"id":"https://openalex.org/keywords/differential-cryptanalysis","display_name":"Differential cryptanalysis","score":0.5627341270446777},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.5098034739494324},{"id":"https://openalex.org/keywords/cryptanalysis","display_name":"Cryptanalysis","score":0.5009517669677734},{"id":"https://openalex.org/keywords/impossible-differential-cryptanalysis","display_name":"Impossible differential cryptanalysis","score":0.4986135959625244},{"id":"https://openalex.org/keywords/key","display_name":"Key (lock)","score":0.49489253759384155},{"id":"https://openalex.org/keywords/differential","display_name":"Differential (mechanical device)","score":0.4862881600856781},{"id":"https://openalex.org/keywords/encryption","display_name":"Encryption","score":0.4787999093532562},{"id":"https://openalex.org/keywords/cipher","display_name":"Cipher","score":0.4775027632713318},{"id":"https://openalex.org/keywords/advanced-encryption-standard","display_name":"Advanced Encryption Standard","score":0.4770469069480896},{"id":"https://openalex.org/keywords/higher-order-differential-cryptanalysis","display_name":"Higher-order differential cryptanalysis","score":0.4189455509185791},{"id":"https://openalex.org/keywords/boomerang-attack","display_name":"Boomerang attack","score":0.4182826578617096},{"id":"https://openalex.org/keywords/block","display_name":"Block (permutation group theory)","score":0.4126230776309967},{"id":"https://openalex.org/keywords/zero","display_name":"Zero (linguistics)","score":0.41136717796325684},{"id":"https://openalex.org/keywords/discrete-mathematics","display_name":"Discrete mathematics","score":0.41106054186820984},{"id":"https://openalex.org/keywords/algorithm","display_name":"Algorithm","score":0.40728944540023804},{"id":"https://openalex.org/keywords/combinatorics","display_name":"Combinatorics","score":0.39473289251327515},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.3705861270427704},{"id":"https://openalex.org/keywords/arithmetic","display_name":"Arithmetic","score":0.34399741888046265},{"id":"https://openalex.org/keywords/cryptography","display_name":"Cryptography","score":0.29641497135162354},{"id":"https://openalex.org/keywords/physics","display_name":"Physics","score":0.17561525106430054},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.1183767318725586},{"id":"https://openalex.org/keywords/philosophy","display_name":"Philosophy","score":0.04971390962600708}],"concepts":[{"id":"https://openalex.org/C106544461","wikidata":"https://www.wikidata.org/wiki/Q543151","display_name":"Block cipher","level":3,"score":0.9074779748916626},{"id":"https://openalex.org/C82424418","wikidata":"https://www.wikidata.org/wiki/Q1826463","display_name":"Linear cryptanalysis","level":4,"score":0.7582060098648071},{"id":"https://openalex.org/C36123800","wikidata":"https://www.wikidata.org/wiki/Q1224471","display_name":"Differential cryptanalysis","level":4,"score":0.5627341270446777},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.5098034739494324},{"id":"https://openalex.org/C181149355","wikidata":"https://www.wikidata.org/wiki/Q897511","display_name":"Cryptanalysis","level":3,"score":0.5009517669677734},{"id":"https://openalex.org/C120488936","wikidata":"https://www.wikidata.org/wiki/Q3005748","display_name":"Impossible differential cryptanalysis","level":5,"score":0.4986135959625244},{"id":"https://openalex.org/C26517878","wikidata":"https://www.wikidata.org/wiki/Q228039","display_name":"Key (lock)","level":2,"score":0.49489253759384155},{"id":"https://openalex.org/C93226319","wikidata":"https://www.wikidata.org/wiki/Q193137","display_name":"Differential (mechanical device)","level":2,"score":0.4862881600856781},{"id":"https://openalex.org/C148730421","wikidata":"https://www.wikidata.org/wiki/Q141090","display_name":"Encryption","level":2,"score":0.4787999093532562},{"id":"https://openalex.org/C2780221543","wikidata":"https://www.wikidata.org/wiki/Q4681865","display_name":"Cipher","level":3,"score":0.4775027632713318},{"id":"https://openalex.org/C94520183","wikidata":"https://www.wikidata.org/wiki/Q190746","display_name":"Advanced Encryption Standard","level":3,"score":0.4770469069480896},{"id":"https://openalex.org/C151607707","wikidata":"https://www.wikidata.org/wiki/Q11673206","display_name":"Higher-order differential cryptanalysis","level":5,"score":0.4189455509185791},{"id":"https://openalex.org/C147552392","wikidata":"https://www.wikidata.org/wiki/Q2869899","display_name":"Boomerang attack","level":5,"score":0.4182826578617096},{"id":"https://openalex.org/C2777210771","wikidata":"https://www.wikidata.org/wiki/Q4927124","display_name":"Block (permutation group theory)","level":2,"score":0.4126230776309967},{"id":"https://openalex.org/C2780813799","wikidata":"https://www.wikidata.org/wiki/Q3274237","display_name":"Zero (linguistics)","level":2,"score":0.41136717796325684},{"id":"https://openalex.org/C118615104","wikidata":"https://www.wikidata.org/wiki/Q121416","display_name":"Discrete mathematics","level":1,"score":0.41106054186820984},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.40728944540023804},{"id":"https://openalex.org/C114614502","wikidata":"https://www.wikidata.org/wiki/Q76592","display_name":"Combinatorics","level":1,"score":0.39473289251327515},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.3705861270427704},{"id":"https://openalex.org/C94375191","wikidata":"https://www.wikidata.org/wiki/Q11205","display_name":"Arithmetic","level":1,"score":0.34399741888046265},{"id":"https://openalex.org/C178489894","wikidata":"https://www.wikidata.org/wiki/Q8789","display_name":"Cryptography","level":2,"score":0.29641497135162354},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.17561525106430054},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.1183767318725586},{"id":"https://openalex.org/C138885662","wikidata":"https://www.wikidata.org/wiki/Q5891","display_name":"Philosophy","level":0,"score":0.04971390962600708},{"id":"https://openalex.org/C97355855","wikidata":"https://www.wikidata.org/wiki/Q11473","display_name":"Thermodynamics","level":1,"score":0.0},{"id":"https://openalex.org/C41895202","wikidata":"https://www.wikidata.org/wiki/Q8162","display_name":"Linguistics","level":1,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1515/jmc-2016-0054","is_oa":true,"landing_page_url":"https://doi.org/10.1515/jmc-2016-0054","pdf_url":null,"source":{"id":"https://openalex.org/S100611479","display_name":"Journal of Mathematical Cryptology","issn_l":"1862-2976","issn":["1862-2976","1862-2984"],"is_oa":false,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310313990","host_organization_name":"De Gruyter","host_organization_lineage":["https://openalex.org/P4310313990"],"host_organization_lineage_names":["De Gruyter"],"type":"journal"},"license":"cc-by-nc-nd","license_id":"https://openalex.org/licenses/cc-by-nc-nd","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Journal of Mathematical Cryptology","raw_type":"journal-article"},{"id":"pmh:oai:doaj.org/article:d7d399cfdcbd4159b4dcba0a1d91d769","is_oa":true,"landing_page_url":"https://doaj.org/article/d7d399cfdcbd4159b4dcba0a1d91d769","pdf_url":null,"source":{"id":"https://openalex.org/S4306401280","display_name":"DOAJ (DOAJ: Directory of Open Access Journals)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by-sa","license_id":"https://openalex.org/licenses/cc-by-sa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Journal of Mathematical Cryptology, Vol 11, Iss 2, Pp 55-62 (2017)","raw_type":"article"}],"best_oa_location":{"id":"doi:10.1515/jmc-2016-0054","is_oa":true,"landing_page_url":"https://doi.org/10.1515/jmc-2016-0054","pdf_url":null,"source":{"id":"https://openalex.org/S100611479","display_name":"Journal of Mathematical Cryptology","issn_l":"1862-2976","issn":["1862-2976","1862-2984"],"is_oa":false,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310313990","host_organization_name":"De Gruyter","host_organization_lineage":["https://openalex.org/P4310313990"],"host_organization_lineage_names":["De Gruyter"],"type":"journal"},"license":"cc-by-nc-nd","license_id":"https://openalex.org/licenses/cc-by-nc-nd","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Journal of Mathematical Cryptology","raw_type":"journal-article"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":16,"referenced_works":["https://openalex.org/W52191336","https://openalex.org/W57809933","https://openalex.org/W1527545029","https://openalex.org/W1553753418","https://openalex.org/W1556727271","https://openalex.org/W1597496610","https://openalex.org/W1598870173","https://openalex.org/W1629301835","https://openalex.org/W1916689065","https://openalex.org/W1964723977","https://openalex.org/W2050186858","https://openalex.org/W2083383916","https://openalex.org/W2185576175","https://openalex.org/W2591674819","https://openalex.org/W4205895259","https://openalex.org/W4241072010"],"related_works":["https://openalex.org/W2557174342","https://openalex.org/W2996824228","https://openalex.org/W4230315357","https://openalex.org/W57168481","https://openalex.org/W2950215720","https://openalex.org/W1598870173","https://openalex.org/W3123145532","https://openalex.org/W2560473362","https://openalex.org/W2791274315","https://openalex.org/W1974690417"],"abstract_inverted_index":{"Abstract":[0],"CAST-256":[1,44,54,85],"(or":[2],"CAST6)":[3],"is":[4,49,116],"a":[5,17,30,68,80],"symmetric-key":[6],"block":[7,45],"cipher":[8],"published":[9],"in":[10],"June":[11],"1998.":[12],"It":[13],"was":[14],"submitted":[15],"as":[16],"candidate":[18],"for":[19],"Advanced":[20],"Encryption":[21],"Standard":[22],"(AES).":[23],"In":[24,110],"this":[25],"paper,":[26],"we":[27,78],"will":[28],"propose":[29,79],"new":[31],"chosen":[32],"text":[33],"attack,":[34,40],"the":[35,43,50,57,62,76,111,113],"multiple":[36],"differential-zero":[37,70],"correlation":[38,71],"linear":[39,72],"to":[41,56],"analyze":[42],"cipher.":[46],"Our":[47],"attack":[48,52,83],"best-known":[51],"on":[53,75,84],"according":[55],"number":[58],"of":[59,89],"rounds":[60],"without":[61],"weak-key":[63],"assumption.":[64],"We":[65],"first":[66,81],"construct":[67],"30-round":[69],"distinguisher.":[73],"Based":[74],"distinguisher,":[77],"33-round":[82],"with":[86],"data":[87],"complexity":[88,100],"<m:math":[90,101],"xmlns:m=\"http://www.w3.org/1998/Math/MathML\">":[91,102],"<m:msup>":[92,103],"<m:mn>2</m:mn>":[93,104],"<m:mn>115.63</m:mn>":[94],"</m:msup>":[95,106],"</m:math>":[96,107],"{2^{115.63}}":[97],"and":[98],"time":[99],"<m:mn>238.26</m:mn>":[105],"{2^{238.26}}":[108],".":[109],"end,":[112],"111-bit":[114],"subkey":[115],"recovering.":[117]},"counts_by_year":[{"year":2020,"cited_by_count":1}],"updated_date":"2026-05-21T09:19:25.381259","created_date":"2025-10-10T00:00:00"}
