Cube-like Attack on Round-Reduced Initialization of Ketje Sr

  title={Cube-like Attack on Round-Reduced Initialization of Ketje Sr},
  author={Xiaoyang Dong and Zheng Li and Xiaoyun Wang and Ling Qin},
  journal={IACR Trans. Symmetric Cryptol.},
This paper studies the Keccak-based authenticated encryption (AE) scheme Ketje Sr against cube-like attacks. Ketje is one of the remaining 16 candidates of third round CAESAR competition, whose primary recommendation is Ketje Sr. Although the cube-like method has been successfully applied to Ketje’s sister ciphers, including Keccak-MAC and Keyak – another Keccak-based AE scheme, similar attacks are missing for Ketje. For Ketje Sr, the state (400-bit) is much smaller than Keccak-MAC and Keyak… CONTINUE READING