Distribution of the best nonzero differential and linear approximations of s-box functions
DOI:
https://doi.org/10.26636/jtit.2006.3.385Keywords:
differential cryptanalysis, linear cryptanalysis, substitution boxesAbstract
In the paper the differential and the linear approximations of two classes of s-box functions are considered. The classes are the permutations and arbitrary functions with n binary inputs and m binary outputs, where 1≤n=m≤10. For randomly chosen functions from each of the classes, the two-dimensional distributions of the best nonzero approximations are investigated. The obtained results indicate that starting from some value of n, the linear approximation of s-box functions becomes more effective than the differential approximation. This advantage of the linear approximation rises with the increase of n and for DES size s-boxes is not yet visible.
Downloads
Downloads
Published
Issue
Section
License
Copyright (c) 2006 Journal of Telecommunications and Information Technology

This work is licensed under a Creative Commons Attribution 4.0 International License.