{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,23]],"date-time":"2026-04-23T15:02:20Z","timestamp":1776956540840,"version":"3.51.4"},"publisher-location":"Cham","reference-count":38,"publisher":"Springer Nature Switzerland","isbn-type":[{"value":"9783032163417","type":"print"},{"value":"9783032163424","type":"electronic"}],"license":[{"start":{"date-parts":[[2026,1,1]],"date-time":"2026-01-01T00:00:00Z","timestamp":1767225600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2026,1,1]],"date-time":"2026-01-01T00:00:00Z","timestamp":1767225600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2026]]},"DOI":"10.1007\/978-3-032-16342-4_21","type":"book-chapter","created":{"date-parts":[[2026,2,11]],"date-time":"2026-02-11T08:58:16Z","timestamp":1770800296000},"page":"377-406","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":1,"title":["Quantum Synthesis of\u00a0Large S-Boxes: Heuristic and\u00a0MILP-Based Transpiled-Depth Optimization"],"prefix":"10.1007","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-5462-8253","authenticated-orcid":false,"given":"Tarun","family":"Yadav","sequence":"first","affiliation":[]},{"ORCID":"https:\/\/orcid.org\/0009-0001-8796-4894","authenticated-orcid":false,"given":"Shweta","family":"Singh","sequence":"additional","affiliation":[]},{"ORCID":"https:\/\/orcid.org\/0009-0003-6817-4269","authenticated-orcid":false,"given":"Sudha","family":"Yadav","sequence":"additional","affiliation":[]}],"member":"297","published-online":{"date-parts":[[2026,2,12]]},"reference":[{"key":"21_CR1","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"450","DOI":"10.1007\/978-3-540-74735-2_31","volume-title":"Cryptographic Hardware and Embedded Systems - CHES 2007","author":"A Bogdanov","year":"2007","unstructured":"Bogdanov, A., et al.: PRESENT: an ultra-lightweight block cipher. In: Paillier, P., Verbauwhede, I. (eds.) CHES 2007. LNCS, vol. 4727, pp. 450\u2013466. Springer, Heidelberg (2007). https:\/\/doi.org\/10.1007\/978-3-540-74735-2_31"},{"key":"21_CR2","doi-asserted-by":"publisher","unstructured":"Banik, S., Pandey, S.K., Peyrin, T., Sasaki, Y., Sim, S.M., Todo, Y.: GIFT: a small present. In: Fischer, W., Homma, N. (eds.) Cryptographic Hardware and Embedded Systems \u2013 CHES 2017. CHES 2017. LNCS, vol. 10529, pp. 321\u2013345. Springer, Cham (2017). https:\/\/doi.org\/10.1007\/978-3-319-66787-4_16","DOI":"10.1007\/978-3-319-66787-4_16"},{"key":"21_CR3","doi-asserted-by":"publisher","unstructured":"Daemen, J., Rijmen, V.: The Design of Rijndael: AES\u2013The Advanced Encryption Standard. Springer, Berlin, Heidelberg (2002). https:\/\/doi.org\/10.1007\/978-3-662-04722-4","DOI":"10.1007\/978-3-662-04722-4"},{"key":"21_CR4","unstructured":"State Cryptography Administration of China: GM\/T 0002-2012: SM4 Block Cipher Algorithm (2012)"},{"key":"21_CR5","doi-asserted-by":"publisher","unstructured":"Beierle, C., et al.: The SKINNY family of block ciphers and its low-latency variant MANTIS . In: Robshaw, M., Katz, J. (eds.) Advances in Cryptology \u2013 CRYPTO 2016. CRYPTO 2016. LNCS, vol. 9815, pp. 123\u2013153. Springer, Berlin, Heidelberg (2016). https:\/\/doi.org\/10.1007\/978-3-662-53008-5_5","DOI":"10.1007\/978-3-662-53008-5_5"},{"key":"21_CR6","unstructured":"State Cryptography Administration of China: GM\/T 0001-2012: ZUC Stream Cipher Algorithm (2012)"},{"key":"21_CR7","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"239","DOI":"10.1007\/3-540-45682-1_15","volume-title":"Advances in Cryptology \u2014 ASIACRYPT 2001","author":"A Satoh","year":"2001","unstructured":"Satoh, A., Morioka, S., Takano, K., Munetoh, S.: A compact rijndael hardware architecture with S-Box optimization. In: Boyd, C. (ed.) ASIACRYPT 2001. LNCS, vol. 2248, pp. 239\u2013254. Springer, Heidelberg (2001). https:\/\/doi.org\/10.1007\/3-540-45682-1_15"},{"key":"21_CR8","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"441","DOI":"10.1007\/11545262_32","volume-title":"Cryptographic Hardware and Embedded Systems \u2013 CHES 2005","author":"D Canright","year":"2005","unstructured":"Canright, D.: A very compact S-Box for AES. In: Rao, J.R., Sunar, B. (eds.) CHES 2005. LNCS, vol. 3659, pp. 441\u2013455. Springer, Heidelberg (2005). https:\/\/doi.org\/10.1007\/11545262_32"},{"issue":"9","key":"21_CR9","doi-asserted-by":"publisher","first-page":"1341","DOI":"10.1109\/TC.2011.144","volume":"61","author":"O Golubitsky","year":"2012","unstructured":"Golubitsky, O., Maslov, D.: A study of optimal 4-bit reversible Toffoli circuits and their synthesis. IEEE Trans. Comput. 61(9), 1341\u20131353 (2012). https:\/\/doi.org\/10.1109\/TC.2011.144","journal-title":"IEEE Trans. Comput."},{"issue":"6","key":"21_CR10","doi-asserted-by":"publisher","first-page":"807","DOI":"10.1109\/TCAD.2005.847911","volume":"24","author":"D Maslov","year":"2005","unstructured":"Maslov, D., DueckG, W., Miller, D.M.: Toffoli network synthesis with templates. IEEE Trans. Comput. Aided Des. Integr. Circuits Syst. 24(6), 807\u2013817 (2005). https:\/\/doi.org\/10.1109\/TCAD.2005.847911","journal-title":"IEEE Trans. Comput. Aided Des. Integr. Circuits Syst."},{"key":"21_CR11","doi-asserted-by":"publisher","unstructured":"Maslov, D., Dueck, G., Miller, M.: Techniques for the synthesis of reversible Toffoli networks. ACM Trans. Des. Autom. Electron. Syst. 12(4) (2007). https:\/\/doi.org\/10.1145\/1278349.1278355","DOI":"10.1145\/1278349.1278355"},{"issue":"6","key":"21_CR12","doi-asserted-by":"publisher","first-page":"710","DOI":"10.1109\/TCAD.2003.811448","volume":"22","author":"VV Shende","year":"2003","unstructured":"Shende, V.V., Prasad, A.K., Markov, I.L., Hayes, J.P.: Synthesis of reversible logic circuits. IEEE Trans. Comput. Aided Des. Integr. Circuits Syst. 22(6), 710\u2013722 (2003). https:\/\/doi.org\/10.1109\/TCAD.2003.811448","journal-title":"IEEE Trans. Comput. Aided Des. Integr. Circuits Syst."},{"key":"21_CR13","doi-asserted-by":"publisher","unstructured":"Wille, R., Drechsler, R.: BDD-based synthesis of reversible logic for large functions. In: 46th ACM\/IEEE Design Automation Conference, pp. 270\u2013275, 2009. https:\/\/doi.org\/10.1145\/1629911.1629984","DOI":"10.1145\/1629911.1629984"},{"issue":"3","key":"21_CR14","doi-asserted-by":"publisher","first-page":"282","DOI":"10.26421\/QIC8.3-4-4","volume":"8","author":"KN Patel","year":"2008","unstructured":"Patel, K.N., Markov, I.L., Hayes, J.P.: Optimal synthesis of linear reversible circuits. Quantum Inf. Comput. 8(3), 282\u2013294 (2008). https:\/\/doi.org\/10.26421\/QIC8.3-4-4","journal-title":"Quantum Inf. Comput."},{"issue":"2","key":"21_CR15","doi-asserted-by":"publisher","first-page":"120","DOI":"10.13154\/tosc.v2020.i2.120-145","volume":"2020","author":"Z Xiang","year":"2020","unstructured":"Xiang, Z., Zeng, X., Lin, D., Bao, Z., Zhang, S.: Optimizing implementations of linear layers. IACR Trans. Symmetric Cryptol. 2020(2), 120\u2013145 (2020). https:\/\/doi.org\/10.13154\/tosc.v2020.i2.120-145","journal-title":"IACR Trans. Symmetric Cryptol."},{"key":"21_CR16","doi-asserted-by":"publisher","unstructured":"Shi, H., Feng, X.: Quantum circuits of AES with a low-depth linear layer and a new structure. In: Chung, K.M., Sasaki, Y. (eds.) Advances in Cryptology \u2013 ASIACRYPT 2024. ASIACRYPT 2024. LNCS, vol. 15491, pp. 358\u2013395. Springer, Singapore (2025). https:\/\/doi.org\/10.1007\/978-981-96-0944-4_12","DOI":"10.1007\/978-981-96-0944-4_12"},{"key":"21_CR17","doi-asserted-by":"publisher","unstructured":"Grassl, M., Langenberg, B., Roetteler, M., Steinwandt, R.: Applying Grover\u2019s algorithm to AES: quantum resource estimates. In: Takagi, T. (eds.) Post-Quantum Cryptography. PQCrypto 2016. LNCS, vol. 9606, pp. 29\u201343. Springer, Cham (2016). https:\/\/doi.org\/10.1007\/978-3-319-29360-8_3","DOI":"10.1007\/978-3-319-29360-8_3"},{"key":"21_CR18","doi-asserted-by":"publisher","unstructured":"Dutta, S., Ghatak, A., Chattopadhyay, A., Maitra, S.: Quantum cryptanalysis of ZUC and related resource estimation. In: Mukhopadhyay, S., St\u0103nic\u0103, P. (eds.) Progress in Cryptology \u2013 INDOCRYPT 2024. INDOCRYPT 2024. LNCS, vol. 15495, pp.\u00a0329\u2013355. Springer, Cham (2025). https:\/\/doi.org\/10.1007\/978-3-031-80308-6_15","DOI":"10.1007\/978-3-031-80308-6_15"},{"key":"21_CR19","doi-asserted-by":"publisher","unstructured":"Dasu, V.A., Baksi, A., Sarkar, S., Chattopadhyay, A.: LIGHTER-R: optimized reversible circuit implementation for S-boxes. In: 32nd IEEE International System-on-Chip Conference (SOCC), Singapore, pp. 260\u2013265, 2019. https:\/\/doi.org\/10.1109\/SOCC46988.2019.1570548320","DOI":"10.1109\/SOCC46988.2019.1570548320"},{"key":"21_CR20","unstructured":"Lin, D., Yang, C., Xu, S., Tian, S., Sun, B.: On the construction of quantum circuits for S-boxes with different criteria based on the SAT solver. IACR Cryptology ePrint Archive, Report 2024\/565, 2024"},{"key":"21_CR21","doi-asserted-by":"publisher","unstructured":"Chen, J., Liu, Q., Fan, Y., Wu, L., Li, B., Wang, M.: New SAT-based model for quantum circuit decision problem: Searching for low-cost quantum implementation. IACR Commun. Cryptol. 1(1) (2024). https:\/\/doi.org\/10.62056\/anmmp-4c2h","DOI":"10.62056\/anmmp-4c2h"},{"key":"21_CR22","doi-asserted-by":"publisher","unstructured":"Baksi, A., et al.: Quantum implementation of linear and non-linear layers. In: IEEE 37th International System-on-Chip Conference (SOCC), Dresden, Germany, pp. 1\u20136, 2024. https:\/\/doi.org\/10.1109\/SOCC62300.2024.10737862","DOI":"10.1109\/SOCC62300.2024.10737862"},{"issue":"6","key":"21_CR23","doi-asserted-by":"publisher","first-page":"818","DOI":"10.1109\/TCAD.2013.2244643","volume":"32","author":"M Amy","year":"2013","unstructured":"Amy, M., Maslov, D., Mosca, M., Roetteler, M.: A meet-in-the-middle algorithm for fast synthesis of depth-optimal quantum circuits. IEEE Trans. Comput. Aided Des. Integr. Circuits Syst. 32(6), 818\u2013830 (2013). https:\/\/doi.org\/10.1109\/TCAD.2013.2244643","journal-title":"IEEE Trans. Comput. Aided Des. Integr. Circuits Syst."},{"issue":"4","key":"21_CR24","doi-asserted-by":"publisher","DOI":"10.1103\/PhysRevA.87.042302","volume":"87","author":"P Selinger","year":"2013","unstructured":"Selinger, P.: Quantum circuits of T-depth one. Phys. Rev. A 87(4), 042302 (2013). https:\/\/doi.org\/10.1103\/PhysRevA.87.042302","journal-title":"Phys. Rev. A"},{"issue":"2","key":"21_CR25","doi-asserted-by":"publisher","DOI":"10.1103\/PhysRevA.93.022311","volume":"93","author":"D Maslov","year":"2016","unstructured":"Maslov, D.: Advantages of using relative-phase Toffoli gates with an application to multiple control Toffoli optimization. Phys. Rev. A 93(2), 022311 (2016). https:\/\/doi.org\/10.1103\/PhysRevA.93.022311","journal-title":"Phys. Rev. A"},{"key":"21_CR26","doi-asserted-by":"publisher","first-page":"74","DOI":"10.48550\/arXiv.1709.06648","volume":"2","author":"C Gidney","year":"2018","unstructured":"Gidney, C.: Halving the cost of quantum addition. Quantum 2, 74 (2018). https:\/\/doi.org\/10.48550\/arXiv.1709.06648","journal-title":"Quantum"},{"key":"21_CR27","doi-asserted-by":"publisher","unstructured":"Cuccaro, S., Draper, T., Kutin, S., Moulton, D.: A new quantum ripple-carry addition circuit. arXiv:quant-ph\/0410184, 2004. https:\/\/doi.org\/10.48550\/arXiv.quant-ph\/0410184","DOI":"10.48550\/arXiv.quant-ph\/0410184"},{"key":"21_CR28","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"64","DOI":"10.1007\/978-3-642-29517-1_6","volume-title":"Reversible Computation","author":"M Soeken","year":"2012","unstructured":"Soeken, M., Frehse, S., Wille, R., Drechsler, R.: RevKit: an open source toolkit for the design of reversible circuits. In: De Vos, A., Wille, R. (eds.) RC 2011. LNCS, vol. 7165, pp. 64\u201376. Springer, Heidelberg (2012). https:\/\/doi.org\/10.1007\/978-3-642-29517-1_6"},{"key":"21_CR29","doi-asserted-by":"publisher","unstructured":"Wille, R., et al.: The MQT handbook: a summary of design automation tools and software for quantum computing. In: IEEE International Conference on Quantum Software (QSW), Shenzhen, China, pp. 1\u20138, 2024. https:\/\/doi.org\/10.1109\/QSW62656.2024.00013","DOI":"10.1109\/QSW62656.2024.00013"},{"key":"21_CR30","doi-asserted-by":"publisher","unstructured":"Aleksandrowicz, G., et al.: Qiskit: an open-source framework for quantum computing (0.7.2). Zenodo, 2019. https:\/\/doi.org\/10.5281\/zenodo.2562111","DOI":"10.5281\/zenodo.2562111"},{"issue":"1","key":"21_CR31","doi-asserted-by":"publisher","DOI":"10.1088\/2058-9565\/ab8e92","volume":"6","author":"S Sivarajah","year":"2020","unstructured":"Sivarajah, S., Dilkes, S., Cowtan, A., Simmons, W., Edgington, A., Duncan, R.: t|ket$$\\rangle $$: a retargetable compiler for NISQ devices. Quantum Sci. Technol. 6(1), 014003 (2020). https:\/\/doi.org\/10.1088\/2058-9565\/ab8e92","journal-title":"Quantum Sci. Technol."},{"key":"21_CR32","doi-asserted-by":"publisher","unstructured":"Chen, L., et al.: Report on Post-Quantum Cryptography. NISTIR 8105, 2016. https:\/\/doi.org\/10.6028\/NIST.IR.8105","DOI":"10.6028\/NIST.IR.8105"},{"key":"21_CR33","doi-asserted-by":"publisher","unstructured":"Langenberg, B., Pham, H., Steinwandt, R.: Reducing the cost of implementing AES as a quantum circuit. IEEE Trans. Quantum Eng. 1, 1\u201312, Art no. 2500112 (2020).https:\/\/doi.org\/10.1109\/TQE.2020.2965697","DOI":"10.1109\/TQE.2020.2965697"},{"issue":"11","key":"21_CR34","doi-asserted-by":"publisher","first-page":"2563","DOI":"10.1109\/TC.2024.3449094","volume":"73","author":"M Zhang","year":"2024","unstructured":"Zhang, M., Shi, T., Wu, W., Sui, H.: Optimized quantum circuit of AES with interlacing-uncompute strategy. IEEE Trans. Comput. 73(11), 2563\u20132575 (2024). https:\/\/doi.org\/10.1109\/TC.2024.3449094","journal-title":"IEEE Trans. Comput."},{"key":"21_CR35","doi-asserted-by":"publisher","unstructured":"Jang, K., Baksi, A., Kim, H., Song, G., Seo, H., Chattopadhyay, A.: Quantum analysis of AES. IACR Commun. Cryptol. 2(1) (2025). https:\/\/doi.org\/10.62056\/ay11zo-3y","DOI":"10.62056\/ay11zo-3y"},{"key":"21_CR36","doi-asserted-by":"publisher","first-page":"177","DOI":"10.1007\/s11128-024-04394-x","volume":"23","author":"Q Luo","year":"2024","unstructured":"Luo, Q., Li, Q., Li, X., Yang, G., Shen, J., Zheng, M.: Quantum circuit implementations of SM4 block cipher optimizing the number of qubits. Quantum Inf. Process. 23, 177 (2024). https:\/\/doi.org\/10.1007\/s11128-024-04394-x","journal-title":"Quantum Inf. Process."},{"key":"21_CR37","doi-asserted-by":"publisher","first-page":"337","DOI":"10.1007\/s12095-023-00650-6","volume":"17","author":"T Yadav","year":"2025","unstructured":"Yadav, T., Kumar, M., Kumar, A., Pal, S.K.: A practical-quantum differential attack on block ciphers. Cryptogr. Commun. 17, 337\u2013357 (2025). https:\/\/doi.org\/10.1007\/s12095-023-00650-6","journal-title":"Cryptogr. Commun."},{"issue":"11","key":"21_CR38","doi-asserted-by":"publisher","first-page":"4776","DOI":"10.3390\/app11114776","volume":"11","author":"K Jang","year":"2021","unstructured":"Jang, K., Song, G., Kim, H., Kwon, H., Kim, H., Seo, H.: Efficient implementation of PRESENT and GIFT on quantum computers. Appl. Sci. 11(11), 4776 (2021). https:\/\/doi.org\/10.3390\/app11114776","journal-title":"Appl. Sci."}],"container-title":["Lecture Notes in Computer Science","Security, Privacy, and Applied Cryptography Engineering"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-032-16342-4_21","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,2,11]],"date-time":"2026-02-11T08:58:20Z","timestamp":1770800300000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-032-16342-4_21"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026]]},"ISBN":["9783032163417","9783032163424"],"references-count":38,"URL":"https:\/\/doi.org\/10.1007\/978-3-032-16342-4_21","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2026]]},"assertion":[{"value":"12 February 2026","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"SPACE","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Security, Privacy, and Applied Cryptography Engineering","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Guwahati","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"India","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2025","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"16 December 2025","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"19 December 2025","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"15","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"space2025","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/event.iitg.ac.in\/space2025\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}