{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,18]],"date-time":"2026-07-18T10:09:00Z","timestamp":1784369340772,"version":"3.55.0"},"publisher-location":"Singapore","reference-count":29,"publisher":"Springer Nature Singapore","isbn-type":[{"value":"9789819609406","type":"print"},{"value":"9789819609413","type":"electronic"}],"license":[{"start":{"date-parts":[[2024,12,9]],"date-time":"2024-12-09T00:00:00Z","timestamp":1733702400000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2024,12,9]],"date-time":"2024-12-09T00:00:00Z","timestamp":1733702400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2025]]},"DOI":"10.1007\/978-981-96-0941-3_9","type":"book-chapter","created":{"date-parts":[[2024,12,8]],"date-time":"2024-12-08T13:35:33Z","timestamp":1733664933000},"page":"267-300","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":5,"title":["Key Collisions on\u00a0AES and\u00a0Its Applications"],"prefix":"10.1007","author":[{"given":"Kodai","family":"Taiyama","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Kosei","family":"Sakamoto","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Ryoma","family":"Ito","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Kazuma","family":"Taka","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Takanori","family":"Isobe","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2024,12,9]]},"reference":[{"key":"9_CR1","unstructured":"Albertini, A., Duong, T., Gueron, S., K\u00f6lbl, S., Luykx, A., Schmieg, S.: How to abuse and fix authenticated encryption without key commitment. In: Butler, K.R.B., Thomas, K. (eds.) 31st USENIX Security Symposium, USENIX Security 2022, Boston, MA, USA, August 10-12, 2022. pp. 3291\u20133308. USENIX Association (2022), https:\/\/www.usenix.org\/conference\/usenixsecurity22\/presentation\/albertini"},{"key":"9_CR2","doi-asserted-by":"publisher","unstructured":"Aumasson, J., Jr., J.N., Sepehrdad, P.: Cryptanalysis of the ISDB scrambling algorithm (MULTI2). In: Dunkelman, O. (ed.) Fast Software Encryption, 16th International Workshop, FSE 2009, Leuven, Belgium, February 22-25, 2009, Revised Selected Papers. Lecture Notes in Computer Science, vol.\u00a05665, pp. 296\u2013307. Springer (2009). https:\/\/doi.org\/10.1007\/978-3-642-03317-9_18, https:\/\/doi.org\/10.1007\/978-3-642-03317-9_18","DOI":"10.1007\/978-3-642-03317-9_18"},{"key":"9_CR3","doi-asserted-by":"publisher","unstructured":"Becker, G.T., Regazzoni, F., Paar, C., Burleson, W.P.: Stealthy dopant-level hardware trojans: extended version. J. Cryptogr. Eng. 4(1), 19\u201331 (2014). https:\/\/doi.org\/10.1007\/S13389-013-0068-0, https:\/\/doi.org\/10.1007\/s13389-013-0068-0","DOI":"10.1007\/S13389-013-0068-0"},{"key":"9_CR4","doi-asserted-by":"crossref","unstructured":"Biryukov, A., Khovratovich, D., Nikolic, I.: Distinguisher and related-key attack on the full AES-256. In: CRYPTO. Lecture Notes in Computer Science, vol.\u00a05677, pp. 231\u2013249. Springer (2009)","DOI":"10.1007\/978-3-642-03356-8_14"},{"key":"9_CR5","doi-asserted-by":"crossref","unstructured":"Biryukov, A., Nikolic, I.: Automatic search for related-key differential characteristics in byte-oriented block ciphers: Application to aes, camellia, khazad and others. In: EUROCRYPT. Lecture Notes in Computer Science, vol.\u00a06110, pp. 322\u2013344. Springer (2010)","DOI":"10.1007\/978-3-642-13190-5_17"},{"key":"9_CR6","doi-asserted-by":"publisher","unstructured":"Biryukov, A., Nikolic, I.: Colliding keys for SC2000-256. In: Joux, A., Youssef, A.M. (eds.) Selected Areas in Cryptography - SAC 2014 - 21st International Conference, Montreal, QC, Canada, August 14-15, 2014, Revised Selected Papers. Lecture Notes in Computer Science, vol.\u00a08781, pp. 77\u201391. Springer (2014). https:\/\/doi.org\/10.1007\/978-3-319-13051-4_5, https:\/\/doi.org\/10.1007\/978-3-319-13051-4_5","DOI":"10.1007\/978-3-319-13051-4_5"},{"key":"9_CR7","doi-asserted-by":"crossref","unstructured":"Chen, L.: Recommendation for key derivation using pseudorandom functions. NIST SP 800-108r1 (2022)","DOI":"10.6028\/NIST.SP.800-108r1-draft"},{"key":"9_CR8","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-662-04722-4","volume-title":"The Design of Rijndael: AES - The Advanced Encryption Standard","author":"J Daemen","year":"2002","unstructured":"Daemen, J., Rijmen, V.: The Design of Rijndael: AES - The Advanced Encryption Standard. Information Security and Cryptography, Springer (2002)"},{"key":"9_CR9","doi-asserted-by":"crossref","unstructured":"Derbez, P., Euler, M., Fouque, P., Nguyen, P.H.: Revisiting related-key boomerang attacks on AES using computer-aided tool. In: ASIACRYPT (3). Lecture Notes in Computer Science, vol. 13793, pp. 68\u201388. Springer (2022)","DOI":"10.1007\/978-3-031-22969-5_3"},{"key":"9_CR10","doi-asserted-by":"crossref","unstructured":"Dong, X., Guo, J., Li, S., Pham, P.: Triangulating rebound attack on aes-like hashing. In: CRYPTO (1). Lecture Notes in Computer Science, vol. 13507, pp. 94\u2013124. Springer (2022)","DOI":"10.1007\/978-3-031-15802-5_4"},{"key":"9_CR11","doi-asserted-by":"crossref","unstructured":"Dong, X., Sun, S., Shi, D., Gao, F., Wang, X., Hu, L.: Quantum collision attacks on aes-like hashing with low quantum random access memories. In: ASIACRYPT (2). Lecture Notes in Computer Science, vol. 12492, pp. 727\u2013757. Springer (2020)","DOI":"10.1007\/978-3-030-64834-3_25"},{"key":"9_CR12","doi-asserted-by":"crossref","unstructured":"Dong, X., Zhang, Z., Sun, S., Wei, C., Wang, X., Hu, L.: Automatic classical and quantum rebound attacks on aes-like hashing by exploiting related-key differentials. In: ASIACRYPT (1). Lecture Notes in Computer Science, vol. 13090, pp. 241\u2013271. Springer (2021)","DOI":"10.1007\/978-3-030-92062-3_9"},{"key":"9_CR13","doi-asserted-by":"crossref","unstructured":"Fouque, P., Jean, J., Peyrin, T.: Structural evaluation of AES and chosen-key distinguisher of 9-round AES-128. In: CRYPTO (1). Lecture Notes in Computer Science, vol.\u00a08042, pp. 183\u2013203. Springer (2013)","DOI":"10.1007\/978-3-642-40041-4_11"},{"key":"9_CR14","doi-asserted-by":"crossref","unstructured":"G\u00e9rault, D., Minier, M., Solnon, C.: Constraint programming models for chosen key differential cryptanalysis. In: CP. Lecture Notes in Computer Science, vol.\u00a09892, pp. 584\u2013601. Springer (2016)","DOI":"10.1007\/978-3-319-44953-1_37"},{"key":"9_CR15","doi-asserted-by":"crossref","unstructured":"Gilbert, H., Peyrin, T.: Super-sbox cryptanalysis: Improved attacks for aes-like permutations. In: FSE. Lecture Notes in Computer Science, vol.\u00a06147, pp. 365\u2013383. Springer (2010)","DOI":"10.1007\/978-3-642-13858-4_21"},{"key":"9_CR16","doi-asserted-by":"crossref","unstructured":"Hosoyamada, A., Sasaki, Y.: Finding hash collisions with quantum computers by using differential trails with smaller probability than birthday bound. In: EUROCRYPT (2). Lecture Notes in Computer Science, vol. 12106, pp. 249\u2013279. Springer (2020)","DOI":"10.1007\/978-3-030-45724-2_9"},{"key":"9_CR17","doi-asserted-by":"crossref","unstructured":"Jean, J., Naya-Plasencia, M., Peyrin, T.: Multiple limited-birthday distinguishers and applications. In: Selected Areas in Cryptography. Lecture Notes in Computer Science, vol.\u00a08282, pp. 533\u2013550. Springer (2013)","DOI":"10.1007\/978-3-662-43414-7_27"},{"key":"9_CR18","doi-asserted-by":"publisher","unstructured":"Kelsey, J., Schneier, B., Wagner, D.A.: Key-schedule cryptanalysis of idea, g-des, gost, safer, and triple-des. In: Koblitz, N. (ed.) Advances in Cryptology - CRYPTO \u201996, 16th Annual International Cryptology Conference, Santa Barbara, California, USA, August 18-22, 1996, Proceedings. Lecture Notes in Computer Science, vol.\u00a01109, pp. 237\u2013251. Springer (1996). https:\/\/doi.org\/10.1007\/3-540-68697-5_19, https:\/\/doi.org\/10.1007\/3-540-68697-5_19","DOI":"10.1007\/3-540-68697-5_19"},{"issue":"2","key":"9_CR19","doi-asserted-by":"publisher","first-page":"489","DOI":"10.1007\/s12083-019-00734-2","volume":"13","author":"H Kim","year":"2020","unstructured":"Kim, H., Park, M., Cho, J., Kim, J., Kim, J.: Weaknesses of some lightweight blockciphers suitable for iot systems and their applications in hash modes. Peer-to-Peer Netw. Appl. 13(2), 489\u2013513 (2020)","journal-title":"Peer-to-Peer Netw. Appl."},{"key":"9_CR20","doi-asserted-by":"crossref","unstructured":"Lamberger, M., Mendel, F., Rechberger, C., Rijmen, V., Schl\u00e4ffer, M.: Rebound distinguishers: Results on the full whirlpool compression function. In: ASIACRYPT. Lecture Notes in Computer Science, vol.\u00a05912, pp. 126\u2013143. Springer (2009)","DOI":"10.1007\/978-3-642-10366-7_8"},{"key":"9_CR21","doi-asserted-by":"publisher","unstructured":"Matsui, M.: Key collisions of the RC4 stream cipher. In: Dunkelman, O. (ed.) Fast Software Encryption, 16th International Workshop, FSE 2009, Leuven, Belgium, February 22-25, 2009, Revised Selected Papers. Lecture Notes in Computer Science, vol.\u00a05665, pp. 38\u201350. Springer (2009). https:\/\/doi.org\/10.1007\/978-3-642-03317-9_3, https:\/\/doi.org\/10.1007\/978-3-642-03317-9_3","DOI":"10.1007\/978-3-642-03317-9_3"},{"key":"9_CR22","doi-asserted-by":"crossref","unstructured":"Mendel, F., Peyrin, T., Rechberger, C., Schl\u00e4ffer, M.: Improved cryptanalysis of the reduced gr\u00f8stl compression function, ECHO permutation and AES block cipher. In: Selected Areas in Cryptography. Lecture Notes in Computer Science, vol.\u00a05867, pp. 16\u201335. Springer (2009)","DOI":"10.1007\/978-3-642-05445-7_2"},{"key":"9_CR23","doi-asserted-by":"crossref","unstructured":"Mendel, F., Rechberger, C., Schl\u00e4ffer, M., Thomsen, S.S.: The rebound attack: Cryptanalysis of reduced whirlpool and gr\u00f8stl. In: FSE. Lecture Notes in Computer Science, vol.\u00a05665, pp. 260\u2013276. Springer (2009)","DOI":"10.1007\/978-3-642-03317-9_16"},{"key":"9_CR24","unstructured":"Robshaw, M.: A cryptographic review of cipherunicorn-a. CRYPTRECT Technical report (2001)"},{"key":"9_CR25","doi-asserted-by":"publisher","unstructured":"Sasaki, Y.: Meet-in-the-middle preimage attacks on AES hashing modes and an application to whirlpool. In: Joux, A. (ed.) Fast Software Encryption - 18th International Workshop, FSE 2011, Lyngby, Denmark, February 13-16, 2011, Revised Selected Papers. Lecture Notes in Computer Science, vol.\u00a06733, pp. 378\u2013396. Springer (2011). https:\/\/doi.org\/10.1007\/978-3-642-21702-9_22, https:\/\/doi.org\/10.1007\/978-3-642-21702-9_22","DOI":"10.1007\/978-3-642-21702-9_22"},{"key":"9_CR26","doi-asserted-by":"crossref","unstructured":"Sasaki, Y., Li, Y., Wang, L., Sakiyama, K., Ohta, K.: Non-full-active super-sbox analysis: Applications to ECHO and gr\u00f8stl. In: ASIACRYPT. Lecture Notes in Computer Science, vol.\u00a06477, pp. 38\u201355. Springer (2010)","DOI":"10.1007\/978-3-642-17373-8_3"},{"issue":"1","key":"9_CR27","doi-asserted-by":"publisher","first-page":"111","DOI":"10.46586\/tosc.v2023.i1.111-151","volume":"2023","author":"L Sun","year":"2023","unstructured":"Sun, L., Wang, M.: Sok: Modeling for large s-boxes oriented to differential probabilities and linear correlations. IACR Trans. Symmetric Cryptol. 2023(1), 111\u2013151 (2023)","journal-title":"IACR Trans. Symmetric Cryptol."},{"issue":"3","key":"9_CR28","doi-asserted-by":"publisher","first-page":"93","DOI":"10.46586\/tosc.v2018.i3.93-123","volume":"2018","author":"L Sun","year":"2018","unstructured":"Sun, L., Wang, W., Wang, M.: More Accurate Differential Properties of LED64 and Midori64. IACR Trans. Symmetric Cryptol. 2018(3), 93\u2013123 (2018)","journal-title":"IACR Trans. Symmetric Cryptol."},{"key":"9_CR29","doi-asserted-by":"crossref","unstructured":"Sun, L., Wang, W., Wang, M.: Accelerating the Search of Differential and Linear Characteristics with the SAT Method. IACR Cryptol. ePrint Arch. p.\u00a0213 (2021)","DOI":"10.46586\/tosc.v2021.i1.269-315"}],"container-title":["Lecture Notes in Computer Science","Advances in Cryptology \u2013 ASIACRYPT 2024"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-981-96-0941-3_9","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,12,8]],"date-time":"2024-12-08T14:02:31Z","timestamp":1733666551000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-981-96-0941-3_9"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024,12,9]]},"ISBN":["9789819609406","9789819609413"],"references-count":29,"URL":"https:\/\/doi.org\/10.1007\/978-981-96-0941-3_9","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2024,12,9]]},"assertion":[{"value":"9 December 2024","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"ASIACRYPT","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on the Theory and Application of Cryptology and Information Security","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Kolkata","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"India","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2024","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"10 December 2024","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"14 December 2024","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"30","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"asiacrypt2024","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/asiacrypt.iacr.org\/2024\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}