A copy of this work was available on the public web and has been preserved in the Wayback Machine. The capture dates from 2015; you can also visit the original URL.
The file type is application/pdf
.
Key Recovery Attacks on Iterated Even–Mansour Encryption Schemes
2015
Journal of Cryptology
Iterated Even-Mansour (EM) encryption schemes (also named "key-alternating ciphers") were extensively studied in recent years as an abstraction of commonly used block ciphers. A large amount of previous works on iterated EM concentrated on security in an informationtheoretical model. A central question studied in these papers is: What is the minimal number of rounds for which the resulting cipher is indistinguishable from an ideal cipher? In this paper, we study a similar question in the
doi:10.1007/s00145-015-9207-3
fatcat:6laql7jmobdz5gwbxfryu7zmfq