{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,2,21]],"date-time":"2026-02-21T09:59:40Z","timestamp":1771667980836,"version":"3.50.1"},"reference-count":11,"publisher":"Springer Science and Business Media LLC","issue":"4","license":[{"start":{"date-parts":[[2010,6,8]],"date-time":"2010-06-08T00:00:00Z","timestamp":1275955200000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["J Cryptol"],"published-print":{"date-parts":[[2010,10]]},"DOI":"10.1007\/s00145-010-9062-1","type":"journal-article","created":{"date-parts":[[2010,6,7]],"date-time":"2010-06-07T18:54:22Z","timestamp":1275936862000},"page":"505-518","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":46,"title":["Structural Cryptanalysis of SASAS"],"prefix":"10.1007","volume":"23","author":[{"given":"Alex","family":"Biryukov","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Adi","family":"Shamir","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2010,6,8]]},"reference":[{"key":"9062_CR1","unstructured":"R. Anderson, E. Biham, L. Knudsen, Serpent: a proposal for the AES, in 1st AES Conference (1998)"},{"key":"9062_CR2","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"crossref","first-page":"408","DOI":"10.1007\/3-540-45539-6_28","volume-title":"Advances in Cryptology, Proceedings of EUROCRYPT\u20192000","author":"E. Biham","year":"2000","unstructured":"E. Biham, Cryptanalysis of patarin\u2019s 2-round public key system with S-boxes (2R), in Advances in Cryptology, Proceedings of EUROCRYPT\u20192000. Lecture Notes in Computer Science, vol. 1807 (Springer, Berlin, 2000), pp. 408\u2013416"},{"key":"9062_CR3","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"crossref","first-page":"33","DOI":"10.1007\/3-540-39200-9_3","volume-title":"Advances in Cryptology, Proceedings of EUROCRYPT\u20192003","author":"A. Biryukov","year":"2003","unstructured":"A. Biryukov, C. De Canni\u00e8re, A. Braeken, B. Preneel, A toolbox for cryptanalysis: linear and affine equivalence algorithms, in Advances in Cryptology, Proceedings of EUROCRYPT\u20192003. Lecture Notes in Computer Science, vol. 2656 (Springer, Berlin, 2003), pp. 33\u201350"},{"key":"9062_CR4","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-45146-4_12","volume-title":"Advances in Cryptology, Proceedings of Crypto\u201903","author":"A. Biryukov","year":"2003","unstructured":"A. Biryukov, C. De Canni\u00e8re, G. Dellkrantz, Cryptanalysis of SAFER++, in Advances in Cryptology, Proceedings of Crypto\u201903. Lecture Notes in Computer Science, vol. 2729 (Springer, Berlin, 2003). NES\/DOC\/KUL\/WP5\/028. Full version available at \n                    http:\/\/eprint.iacr.org\/2003\/109\/"},{"key":"9062_CR5","series-title":"Lecture Notes in Computer Science","first-page":"147","volume-title":"Proceedings of FSE\u201997","author":"J. Daemen","year":"1997","unstructured":"J. Daemen, L. Knudsen, V. Rijmen, The block cipher square, in Proceedings of FSE\u201997. Lecture Notes in Computer Science, vol. 1267 (Springer, Berlin, 1997), pp. 147\u2013165"},{"key":"9062_CR6","unstructured":"H. Gilbert, M. Minier, A collision attack on seven rounds of Rijndael, in Proceedings of the Third AES Candidate Conference (2000), pp. 230\u2013241"},{"key":"9062_CR7","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"112","DOI":"10.1007\/3-540-45661-9_9","volume-title":"Fast Software Encryption, FSE 2002","author":"L.R. Knudsen","year":"2002","unstructured":"L.R. Knudsen, D. Wagner, Integral cryptanalysis (extended abstract), in Fast Software Encryption, FSE 2002. Lecture Notes in Computer Science, vol. 2365 (Springer, Berlin, 2002), pp. 112\u2013127"},{"key":"9062_CR8","unstructured":"S. Lucks, Attacking seven rounds of Rijndael under 192-bit and 256-bit keys, in Proceedings of the Third AES Candidate Conference (2000), pp. 215\u2013229"},{"key":"9062_CR9","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"244","DOI":"10.1007\/3-540-44706-7_17","volume-title":"Fast Software Encryption, FSE 2000","author":"J. Nakahara Jr.","year":"2001","unstructured":"J. Nakahara Jr., B. Preneel, J. Vandewalle, Linear cryptanalysis of reduced-round versions of the SAFER block cipher family, in Fast Software Encryption, FSE 2000, ed. by B. Schneier, Lecture Notes in Computer Science, vol. 1978 (Springer, Berlin, 2001), pp. 244\u2013261"},{"key":"9062_CR10","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"crossref","first-page":"369","DOI":"10.1007\/BFb0028492","volume-title":"Proceedings of ICICS 97","author":"J. Patarin","year":"1997","unstructured":"J. Patarin, L. Goubin, Asymmetric cryptography with S-Boxes, in Proceedings of ICICS 97. Lecture Notes in Computer Science, vol. 1334 (Springer, Berlin, 1997), pp. 369\u2013380"},{"key":"9062_CR11","volume-title":"The Design of Rijndael: AES\u2014The Advanced Encryption Standard","author":"V. Rijmen","year":"2002","unstructured":"V. Rijmen, J. Daemen, The Design of Rijndael: AES\u2014The Advanced Encryption Standard (Springer, Berlin, 2002)"}],"container-title":["Journal of Cryptology"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/s00145-010-9062-1.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/article\/10.1007\/s00145-010-9062-1\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/s00145-010-9062-1","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"},{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/s00145-010-9062-1.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2020,4,8]],"date-time":"2020-04-08T08:44:37Z","timestamp":1586335477000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/s00145-010-9062-1"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2010,6,8]]},"references-count":11,"journal-issue":{"issue":"4","published-print":{"date-parts":[[2010,10]]}},"alternative-id":["9062"],"URL":"https:\/\/doi.org\/10.1007\/s00145-010-9062-1","relation":{},"ISSN":["0933-2790","1432-1378"],"issn-type":[{"value":"0933-2790","type":"print"},{"value":"1432-1378","type":"electronic"}],"subject":[],"published":{"date-parts":[[2010,6,8]]},"assertion":[{"value":"16 October 2001","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"8 June 2010","order":2,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"This content has been made available to all.","name":"free","label":"Free to read"}]}}