{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,10,29]],"date-time":"2025-10-29T02:52:15Z","timestamp":1761706335144,"version":"3.37.3"},"reference-count":32,"publisher":"Springer Science and Business Media LLC","issue":"1","license":[{"start":{"date-parts":[[2015,8,29]],"date-time":"2015-08-29T00:00:00Z","timestamp":1440806400000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"funder":[{"name":"National Key Basic Research Project of China","award":["2011CB302400"],"award-info":[{"award-number":["2011CB302400"]}]},{"name":"National Key Basic Research Project of China","award":["2011CB302400"],"award-info":[{"award-number":["2011CB302400"]}]},{"DOI":"10.13039\/501100001809","name":"National Science Foundation of China","doi-asserted-by":"crossref","award":["61379139"],"award-info":[{"award-number":["61379139"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"crossref"}]},{"DOI":"10.13039\/501100001809","name":"National Science Foundation of China","doi-asserted-by":"crossref","award":["61379139"],"award-info":[{"award-number":["61379139"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"crossref"}]},{"name":"\u201cStrategic Priority Research Program\u201d of the Chinese Academy of Sciences","award":["XDA06010701"],"award-info":[{"award-number":["XDA06010701"]}]},{"name":"\u201cStrategic Priority Research Program\u201d of the Chinese Academy of Sciences","award":["XDA06010701"],"award-info":[{"award-number":["XDA06010701"]}]}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["Des. Codes Cryptogr."],"published-print":{"date-parts":[[2016,10]]},"DOI":"10.1007\/s10623-015-0132-0","type":"journal-article","created":{"date-parts":[[2015,8,28]],"date-time":"2015-08-28T09:02:40Z","timestamp":1440752560000},"page":"109-129","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":5,"title":["Separating invertible key derivations from non-invertible ones: sequential indifferentiability of 3-round Even\u2013Mansour"],"prefix":"10.1007","volume":"81","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-8520-6301","authenticated-orcid":false,"given":"Chun","family":"Guo","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Dongdai","family":"Lin","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2015,8,29]]},"reference":[{"key":"132_CR1","unstructured":"Anderson R., Biham E., Knudsen L.: Serpent: a proposal for the advanced encryption standard (1998)."},{"key":"132_CR2","unstructured":"Andreeva E., Bogdanov A., Dodis Y., Mennink B., Steinberger J.: On the indifferentiability of key-alternating ciphers. In: Canetti R., Garay J. (eds.) Advances in Cryptology\u2014CRYPTO 2013. Lecture Notes in Computer Science, vol. 8042, pp. 531\u2013550. Springer, Berlin (2013). Full version: http:\/\/eprint.iacr.org\/2013\/061.pdf ."},{"key":"132_CR3","doi-asserted-by":"crossref","unstructured":"Bertoni G., Daemen J., Peeters M., Van Assche G.: On the indifferentiability of the sponge construction. In: Smart N. (ed.) Advances in Cryptology\u2014EUROCRYPT 2008. Lecture Notes in Computer Science, vol. 4965, pp. 181\u2013197. Springer, Berlin (2008).","DOI":"10.1007\/978-3-540-78967-3_11"},{"key":"132_CR4","doi-asserted-by":"crossref","unstructured":"Biryukov A., Wagner D.: Advanced slide attacks. In: Preneel B. (ed.) Advances in Cryptology\u2014EUROCRYPT 2000. Lecture Notes in Computer Science, vol. 1807, pp. 589\u2013606. Springer, Berlin (2000).","DOI":"10.1007\/3-540-45539-6_41"},{"key":"132_CR5","doi-asserted-by":"crossref","unstructured":"Biryukov A., Khovratovich D., Nikoli\u0107 I.: Distinguisher and related-key attack on the full AES-256. In: Halevi S. (ed.) Advances in Cryptology\u2014CRYPTO 2009. Lecture Notes in Computer Science, vol. 5677, pp. 231\u2013249. Springer, Berlin (2009).","DOI":"10.1007\/978-3-642-03356-8_14"},{"key":"132_CR6","doi-asserted-by":"crossref","unstructured":"Black J.: The ideal-cipher model, revisited: an uninstantiable blockcipher-based hash function. In: Robshaw M. (ed.) Fast Software Encryption. Lecture Notes in Computer Science, vol. 4047, pp. 328\u2013340. Springer, Berlin (2006).","DOI":"10.1007\/11799313_21"},{"key":"132_CR7","doi-asserted-by":"crossref","unstructured":"Bogdanov A., Knudsen L., Leander G., Paar C., Poschmann A., Robshaw M., Seurin Y., Vikkelsoe C.: Present: an ultra-lightweight block cipher. In: Paillier P., Verbauwhede I. (eds.) Cryptographic Hardware and Embedded Systems\u2014CHES 2007. Lecture Notes in Computer Science, vol. 4727, pp. 450\u2013466. Springer, Berlin (2007).","DOI":"10.1007\/978-3-540-74735-2_31"},{"key":"132_CR8","doi-asserted-by":"crossref","unstructured":"Bogdanov A., Knudsen L., Leander G., Standaert F.X., Steinberger J., Tischhauser E.: Key-alternating ciphers in a provable setting: encryption using a small number of public permutations. In: Pointcheval D., Johansson T. (eds.) Advances in Cryptology\u2014EUROCRYPT 2012. Lecture Notes in Computer Science, vol. 7237, pp. 45\u201362. Springer, Berlin (2012).","DOI":"10.1007\/978-3-642-29011-4_5"},{"key":"132_CR9","doi-asserted-by":"crossref","unstructured":"Canetti R., Goldreich O., Halevi S.: The random oracle methodology, revisited. J. ACM 51(4), 557\u2013594 (2004).","DOI":"10.1145\/1008731.1008734"},{"key":"132_CR10","doi-asserted-by":"crossref","unstructured":"Chen S., Steinberger J.: Tight security bounds for key-alternating ciphers. In: Nguyen P., Oswald E. (eds.) Advances in Cryptology\u2014EUROCRYPT 2014. Lecture Notes in Computer Science, vol. 8441, pp. 327\u2013350. Springer, Berlin (2014).","DOI":"10.1007\/978-3-642-55220-5_19"},{"key":"132_CR11","doi-asserted-by":"crossref","unstructured":"Chen S., Lampe R., Lee J., Seurin Y., Steinberger J.: Minimizing the two-round Even\u2013Mansour cipher. In: Garay J., Gennaro R. (eds.) Advances in Cryptology\u2014CRYPTO 2014. Lecture Notes in Computer Science, vol. 8616, pp. 39\u201356. Springer, Berlin (2014).","DOI":"10.1007\/978-3-662-44371-2_3"},{"key":"132_CR12","unstructured":"Cogliati B., Seurin Y.: On the provable security of the iterated Even\u2013Mansour cipher against related-key and chosen-key attacks. In: Oswald E., Fischlin M. (eds.) Advances in Cryptology\u2014EUROCRYPT 2015. Lecture Notes in Computer Science, vol. 9056, pp. 584\u2013613. Springer, Berlin (2015). Full version: http:\/\/eprint.iacr.org\/2015\/069.pdf ."},{"key":"132_CR13","doi-asserted-by":"publisher","unstructured":"Coron J.S., Holenstein T., K\u00fcnzler R., Patarin J., Seurin Y., Tessaro S.: How to build an ideal cipher: the indifferentiability of the Feistel construction. J. Cryptol. 1\u201354 (2014). doi: 10.1007\/s00145-014-9189-6","DOI":"10.1007\/s00145-014-9189-6"},{"key":"132_CR14","doi-asserted-by":"crossref","unstructured":"Daemen J.: Limitations of the Even\u2013Mansour construction. In: Imai H., Rivest R., Matsumoto T. (eds.) Advances in Cryptology\u2014ASIACRYPT\u201991. Lecture Notes in Computer Science, vol. 739, pp. 495\u2013498. Springer, Berlin (1993).","DOI":"10.1007\/3-540-57332-1_46"},{"key":"132_CR15","doi-asserted-by":"crossref","unstructured":"Daemen J., Rijmen V.: The design of Rijndael: AES-the advanced encryption standard. Springer, Berlin (2002).","DOI":"10.1007\/978-3-662-04722-4"},{"key":"132_CR16","doi-asserted-by":"crossref","unstructured":"Dinur I., Dunkelman O., Keller N., Shamir A.: Cryptanalysis of iterated Even\u2013Mansour schemes with two keys. In: Sarkar P., Iwata T. (eds.) Advances in Cryptology\u2014ASIACRYPT 2014. Lecture Notes in Computer Science, vol. 8873, pp. 439\u2013457. Springer, Berlin (2014).","DOI":"10.1007\/978-3-662-45611-8_23"},{"key":"132_CR17","doi-asserted-by":"crossref","unstructured":"Dinur I., Dunkelman O., Gutman M., Shamir A.: Improved top-down techniques in differential cryptanalysis. In: Latincrypt 2015. Lecture Notes in Computer Science. Springer, Berlin (2015). http:\/\/eprint.iacr.org\/2015\/268.pdf .","DOI":"10.1007\/978-3-319-22174-8_8"},{"key":"132_CR18","doi-asserted-by":"publisher","unstructured":"Dinur I., Dunkelman O., Keller N., Shamir A.: Key recovery attacks on iterated Even\u2013Mansour encryption schemes. J. Cryptol. 1\u201332 (2015). doi: 10.1007\/s00145-015-9207-3","DOI":"10.1007\/s00145-015-9207-3"},{"key":"132_CR19","doi-asserted-by":"crossref","unstructured":"Dodis Y., Ristenpart T., Shrimpton T.: Salvaging Merkle\u2013Damg\u00e5rd for practical applications. In: Joux A. (ed.) Advances in Cryptology\u2014EUROCRYPT 2009. Lecture Notes in Computer Science, vol. 5479, pp. 371\u2013388. Springer, Berlin (2009).","DOI":"10.1007\/978-3-642-01001-9_22"},{"key":"132_CR20","doi-asserted-by":"publisher","unstructured":"Dunkelman O., Keller N., Shamir A.: Slidex attacks on the Even\u2013Mansour encryption scheme. J. Cryptol. 28, 1\u201328 (2015). doi: 10.1007\/s00145-013-9164-7","DOI":"10.1007\/s00145-013-9164-7"},{"key":"132_CR21","doi-asserted-by":"crossref","unstructured":"Even S., Mansour Y.: A construction of a cipher from a single pseudorandom permutation. In: Imai H., Rivest R., Matsumoto T. (eds.) Advances in Cryptology\u2014ASIACRYPT\u201991. Lecture Notes in Computer Science, vol. 739, pp. 210\u2013224. Springer, Berlin (1993).","DOI":"10.1007\/3-540-57332-1_17"},{"key":"132_CR22","doi-asserted-by":"crossref","unstructured":"Even S., Mansour Y.: A construction of a cipher from a single pseudorandom permutation. J. Cryptol. 10(3), 151\u2013161 (1997).","DOI":"10.1007\/s001459900025"},{"key":"132_CR23","unstructured":"Farshim P., Procter G.: The related-key security of iterated Even\u2013Mansour ciphers. In: Fast Software Encryption 2015. Lecture Notes in Computer Science. Springer, Berlin (2015). Full version: http:\/\/eprint.iacr.org\/2014\/953.pdf ."},{"key":"132_CR24","unstructured":"Guo C., Lin D.: On the indifferentiability of key-alternating Feistel ciphers with no key derivation. In: Dodis Y., Nielsen J. (eds.) Theory of Cryptography. Lecture Notes in Computer Science, vol. 9014, pp. 110\u2013133. Springer, Berlin (2015). Full version: http:\/\/eprint.iacr.org\/ ."},{"key":"132_CR25","doi-asserted-by":"crossref","unstructured":"Knudsen L., Rijmen V.: Known-key distinguishers for some block ciphers. In: Kurosawa K. (ed.) Advances in Cryptology\u2014ASIACRYPT 2007. Lecture Notes in Computer Science, vol. 4833, pp. 315\u2013324. Springer, Berlin (2007).","DOI":"10.1007\/978-3-540-76900-2_19"},{"key":"132_CR26","unstructured":"Lampe R., Seurin Y.: How to construct an ideal cipher from a small set of public permutations. In: Sako K., Sarkar P. (eds.) Advances in Cryptology\u2014ASIACRYPT 2013. Lecture Notes in Computer Science, vol. 8269, pp. 444\u2013463. Springer, Berlin (2013). Full version: http:\/\/eprint.iacr.org\/2013\/255.pdf ."},{"key":"132_CR27","doi-asserted-by":"crossref","unstructured":"Lampe R., Seurin Y.: Security analysis of key-alternating Feistel ciphers. In: Fast Software Encryption 2014. Lecture Notes in Computer Science. Springer, Berlin (2014).","DOI":"10.1007\/978-3-662-46706-0_13"},{"key":"132_CR28","doi-asserted-by":"crossref","unstructured":"Lampe R., Patarin J., Seurin Y.: An asymptotically tight security analysis of the iterated Even\u2013Mansour cipher. In: Wang X., Sako K. (eds.) Advances in Cryptology\u2014ASIACRYPT 2012. Lecture Notes in Computer Science, vol. 7658, pp. 278\u2013295. Springer, Berlin (2012).","DOI":"10.1007\/978-3-642-34961-4_18"},{"key":"132_CR29","doi-asserted-by":"crossref","unstructured":"Mandal A., Patarin J., Seurin Y.: On the public indifferentiability and correlation intractability of the 6-round Feistel construction. In: Cramer R. (ed.) Theory of Cryptography. Lecture Notes in Computer Science, vol. 7194, pp. 285\u2013302. Springer, Berlin (2012).","DOI":"10.1007\/978-3-642-28914-9_16"},{"key":"132_CR30","doi-asserted-by":"crossref","unstructured":"Maurer U., Renner R., Holenstein C.: Indifferentiability, impossibility results on reductions, and applications to the random oracle methodology. In: Naor M. (ed.) Theory of Cryptography. Lecture Notes in Computer Science, vol. 2951, pp. 21\u201339. Springer, Berlin (2004).","DOI":"10.1007\/978-3-540-24638-1_2"},{"key":"132_CR31","unstructured":"Steinberger J.: Improved security bounds for key-alternating ciphers via Hellinger distance. Cryptology ePrint Archive, Report 2012\/481 (2012). http:\/\/eprint.iacr.org\/ ."},{"key":"132_CR32","doi-asserted-by":"crossref","unstructured":"Yoneyama K., Miyagawa S., Ohta K.: Leaky random oracle (extended abstract). In: Baek J., Bao F., Chen K., Lai X. (eds.) Provable Security. Lecture Notes in Computer Science, vol. 5324, pp. 226\u2013240. Springer, Berlin (2008).","DOI":"10.1007\/978-3-540-88733-1_16"}],"container-title":["Designs, Codes and Cryptography"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/s10623-015-0132-0.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/article\/10.1007\/s10623-015-0132-0\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/s10623-015-0132-0","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,8,29]],"date-time":"2019-08-29T19:25:27Z","timestamp":1567106727000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/s10623-015-0132-0"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2015,8,29]]},"references-count":32,"journal-issue":{"issue":"1","published-print":{"date-parts":[[2016,10]]}},"alternative-id":["132"],"URL":"https:\/\/doi.org\/10.1007\/s10623-015-0132-0","relation":{},"ISSN":["0925-1022","1573-7586"],"issn-type":[{"type":"print","value":"0925-1022"},{"type":"electronic","value":"1573-7586"}],"subject":[],"published":{"date-parts":[[2015,8,29]]}}}