Slide 11
Slide 11 text
Ryoma Ito & Atsuko Miyaji (JAIST)
Our newly discovered and proved correlations
Our results New linear correlations
11
March 11, 2015 FSE 2015 @ Istanbul, Turkey
0 1 2 255
S0
S254
S1
S255
New linear correlations
S0
[i1
] = K[0] (Theorems 1, 2)
S0
[i1
] = K[0]-K[1]-3(Theorem 3)
S0
[i1
] = K[0]-K[1]-1 (Theorem 4)
S255
[i256
]=K[0] (Theorem 5)
S255
[i256
]=K[1] (Theorem 6)
Sr
[ir+1
]=K[0]+K[1]+1 (r ϵ [0, N], Theorem 7)
Xr
=a・Zr+1
+b・K[0]+c・K[1]+d・K[2]+e
unknown internal states: Xr
ϵ {Sr
[ir+1
], Sr
[ jr+1
], jr+1
, tr+1
} and K[0], K[1], K[2],
r ϵ [0, 256], a,b,c,d ϵ {-1, 0, 1}, e ϵ {-3, -2, -1, 0, 1, 2, 3},