Truncated differential cryptanalysis of five rounds of Salsa20

@article{Crowley2005TruncatedDC,
  title={Truncated differential cryptanalysis of five rounds of Salsa20},
  author={Paul Crowley},
  journal={IACR Cryptology ePrint Archive},
  year={2005},
  volume={2005},
  pages={375}
}
  • Paul Crowley
  • Published 2005 in IACR Cryptology ePrint Archive
We present an attack on Salsa20 reduced to five of its twenty rounds. This attack uses many clusters of truncated differentials and requires 2 work and2 plaintexts. 1 Definition of Salsa20 Salsa20 [1] is a candidate in the eSTREAM project to identify new stream ciphers that might be suitable for widespread adoption. For convenience, we recap here the parameterized family of variants Salsa20w/r, with w the word size andr the number of rounds; Salsa20 itself is Salsa20-32/20. A word is an element… CONTINUE READING
Highly Cited
This paper has 47 citations. REVIEW CITATIONS