2012•International Journal of Computer Network and Information SecurityOpen access

Importance of S-Blocks in Modern Block Ciphers

I. V. Lisitskaya, Melnychuk E.D., Lisitskiy K.E.

Open full text 4 citations

Abstract

There is a new approach to determine the degree of cryptographic S-boxes suitability.This approach is based on estimating the number of transformation cycles required for a cipher to achieve differential and linear nature of the state typical for random substitution of the appropriate degree.The paper presents the results of experiments to determine the differential and linear indicators of the Heys cipher (a cipher with a weak linear transformation) and a reduced model of the Rijndael cipher (the cipher with a strong linear transformation), using nibble S-boxes with different values of the XOR table differences maxima and linear approximations table displacements.It is demonstrated that, contrary to widely-known approach that links cipher performance indicators with strength indicators of substitutions that they use, the resistance to cipher attacks by means of linear and differential cryptanalysis (maximum differential and linear probabilities) does not depend on S-boxes used.It is concluded that random substitutions can be used as the Sblock designs without compromising the performance of cryptographic ciphers.It means that the search for Sboxes with high encryption performance (at least for ciphers with strong linear transformations) is an unpromising task.At the same time it is shown that a good cipher can not be built without a nonlinear transformation.S-boxes (non-trivial type) are essential and necessary elements of an effective cryptographic transformation, ensuring the operation of the nonlinear mixing of input data blocks bit segments.

Open-access reader

About this research paper

What this paper is about

There is a new approach to determine the degree of cryptographic S-boxes suitability.This approach is based on estimating the number of transformation cycles required for a cipher to achieve differential and linear nature of the state typical for random substitution of the appropriate degree.The paper presents the results of experiments to determine the differential and linear indicators of the Heys cipher (a cipher with a weak linear transformation) and a reduced model of the Rijndael cipher (the cipher with a strong linear transformation), using nibble S-boxes with different values of the XOR table differences maxima and linear approximations table displacements.It is demonstrated that, contrary to widely-known approach that links cipher performance indicators with strength indicators of substitutions that they use, the resistance to cipher attacks by means of linear and differential cryptanalysis (maximum differential and linear probabilities) does not depend on S-boxes used.It is concluded that random substitutions can be used as the Sblock designs without compromising the performance of cryptographic ciphers.It means that the search for Sboxes with high encryption performance (at least for ciphers with strong linear transformations) is an unpromising task.At the same time it is shown that a good cipher can not be built without a nonlinear transformation.S-boxes (non-trivial type) are essential and necessary elements of an effective cryptographic transformation, ensuring the operation of the nonlinear mixing of input data blocks bit segments.

Why it matters

OpenAlex reports 4 citations for this work. Citation counts describe recorded attention and do not establish research quality.

Key contribution

A contribution statement is not available in the OpenAlex record.

Method / approach

Method details are not available in the OpenAlex metadata.

Main findings

Findings are not separately available in the OpenAlex metadata.

Limitations

Limitations are not available in the OpenAlex metadata.

Applications

Application details are not available in the OpenAlex metadata.

Available abstract

There is a new approach to determine the degree of cryptographic S-boxes suitability.This approach is based on estimating the number of transformation cycles required for a cipher to achieve differential and linear nature of the state typical for random substitution of the appropriate degree.The paper presents the results of experiments to determine the differential and linear indicators of the Heys cipher (a cipher with a weak linear transformation) and a reduced model of the Rijndael cipher (the cipher with a strong linear transformation), using nibble S-boxes with different values of the XOR table differences maxima and linear approximations table displacements.It is demonstrated that, contrary to widely-known approach that links cipher performance indicators with strength indicators of substitutions that they use, the resistance to cipher attacks by means of linear and differential cryptanalysis (maximum differential and linear probabilities) does not depend on S-boxes used.It is concluded that random substitutions can be used as the Sblock designs without compromising the performance of cryptographic ciphers.It means that the search for Sboxes with high encryption performance (at least for ciphers with strong linear transformations) is an unpromising task.At the same time it is shown that a good cipher can not be built without a nonlinear transformation.S-boxes (non-trivial type) are essential and necessary elements of an effective cryptographic transformation, ensuring the operation of the nonlinear mixing of input data blocks bit segments.

Key concepts: Block cipher, Cipher, Computer science, Differential cryptanalysis, Linear cryptanalysis, Cryptography, Stream cipher, S-box

Related papers

Back to paper searchBrowse research topicsOriginal source
Importance of S-Blocks in Modern Block Ciphers — Research Paper | ScholarLens