Correlations in RC6 with a Reduced Number of Rounds

  title={Correlations in RC6 with a Reduced Number of Rounds},
  author={Lars R. Knudsen and Willi Meier},
In this paper the block cipher RC6 is analysed. RC6 is submitted as a candidate for the Advanced Encryption Standard, and is one of five finalists. It has 128-bit blocks and supports keys of 128, 192 and 256 bits, and is an iterated 20-round block cipher. Here it is shown that versions of RC6 with 128-bit blocks can be distinguished from a random permutation with up to 15 rounds; for some weak keys up to 17 rounds. Moreover, with an increased effort key-recovery attacks faster than exhaustive… CONTINUE READING
Highly Cited
This paper has 56 citations. REVIEW CITATIONS


Publications citing this paper.

57 Citations

Citations per Year
Semantic Scholar estimates that this publication has 57 citations based on the available data.

See our FAQ for additional information.


Publications referenced by this paper.
Showing 1-10 of 10 references

The RC6 Block Cipher

  • R. L. Rivest, M.J.B. Robshaw, R. Sidney, Y. L. Yin
  • v1.1, August 20,
  • 1998
3 Excerpts

Cryptography: A Primer

  • A. G. Konheim
  • John Wiley & Sons,
  • 1981
1 Excerpt

Similar Papers

Loading similar papers…