{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,17]],"date-time":"2026-06-17T12:40:52Z","timestamp":1781700052728,"version":"3.54.5"},"reference-count":31,"publisher":"Springer Science and Business Media LLC","issue":"9","license":[{"start":{"date-parts":[[2020,9,1]],"date-time":"2020-09-01T00:00:00Z","timestamp":1598918400000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springer.com\/tdm"},{"start":{"date-parts":[[2020,9,1]],"date-time":"2020-09-01T00:00:00Z","timestamp":1598918400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["Quantum Inf Process"],"published-print":{"date-parts":[[2020,9]]},"DOI":"10.1007\/s11128-020-02844-w","type":"journal-article","created":{"date-parts":[[2020,9,12]],"date-time":"2020-09-12T08:04:21Z","timestamp":1599897861000},"update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":47,"title":["Grover on $$\\,SIMON\\,$$"],"prefix":"10.1007","volume":"19","author":[{"given":"Ravi","family":"Anand","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-7007-0384","authenticated-orcid":false,"given":"Arpita","family":"Maitra","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Sourav","family":"Mukhopadhyay","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2020,9,12]]},"reference":[{"key":"2844_CR1","doi-asserted-by":"publisher","unstructured":"Abed F., List E., Lucks S., Wenzel J.: Differential Cryptanalysis of Round-Reduced Simon and Speck. In: Cid C., Rechberger C. (eds) Fast Software Encryption. FSE 2014. Lecture Notes in Computer Science, vol 8540. Springer, Berlin, Heidelberg (2015) https:\/\/doi.org\/10.1007\/978-3-662-46706-0_27","DOI":"10.1007\/978-3-662-46706-0_27"},{"key":"2844_CR2","doi-asserted-by":"crossref","unstructured":"Amy, M., Di Matteo, O., Gheorghiu, V., Mosca, M., Parent, A., Schanck, J.: Estimating the cost of generic quantum pre-image attacks on SHA-2 and SHA-3. In: International Conference on Selected Areas in Cryptography (pp. 317\u2013337). Springer, Cham (2016)","DOI":"10.1007\/978-3-319-69453-5_18"},{"issue":"6","key":"2844_CR3","doi-asserted-by":"publisher","first-page":"818","DOI":"10.1109\/TCAD.2013.2244643","volume":"32","author":"M Amy","year":"2013","unstructured":"Amy, M., Maslov, D., Mosca, M., Roetteler, M.: A meet-in-the-middle algorithm for fast synthesis of depth-optimal quantum circuits. IEEE Trans. Comput. Aided Des. Integr. Circuits Syst. 32(6), 818\u2013830 (2013)","journal-title":"IEEE Trans. Comput. Aided Des. Integr. Circuits Syst."},{"key":"2844_CR4","doi-asserted-by":"crossref","unstructured":"Beaulieu, R., Shors, D., Smith, J., Treatman-Clark, S., Weeks, B., Wingers, L.: The SIMON and SPECK lightweight block ciphers. In: Proceedings of the 52nd Annual Design Automation Conference (pp. 1\u20136) (2015)","DOI":"10.1145\/2744769.2747946"},{"key":"2844_CR5","doi-asserted-by":"crossref","unstructured":"Bonnetain, X., Hosoyamada, A., Naya-Plasencia, M., Sasaki, Y., Schrottenloher, A.: Quantum attacks without superposition queries: the offline Simon\u2019s algorithm. In: International Conference on the Theory and Application of Cryptology and Information Security (pp. 552\u2013583). Springer, Cham","DOI":"10.1007\/978-3-030-34578-5_20"},{"key":"2844_CR6","doi-asserted-by":"crossref","unstructured":"Grover, L.K.: A fast quantum mechanical algorithm for database search. In: Proceedings of the Twenty-eighth Annual ACM Symposium on Theory of Computing (pp. 212\u2013219) (1996)","DOI":"10.1145\/237814.237866"},{"key":"2844_CR7","doi-asserted-by":"crossref","unstructured":"Grassl, M., Langenberg, B., Roetteler, M., Steinwandt, R.: Applying Grover\u2019s algorithm to AES: quantum resource estimates. In: Post-Quantum Cryptography (pp. 29\u201343). Springer, Cham (2016)","DOI":"10.1007\/978-3-319-29360-8_3"},{"issue":"8","key":"2844_CR8","doi-asserted-by":"publisher","first-page":"080504","DOI":"10.1103\/PhysRevLett.122.080504","volume":"122","author":"R Harper","year":"2019","unstructured":"Harper, R., Flammia, S.T.: Fault-tolerant logical gates in the ibm quantum experience. Phys. Rev. Lett. 122(8), 080504 (2019)","journal-title":"Phys. Rev. Lett."},{"key":"2844_CR9","doi-asserted-by":"crossref","unstructured":"Hosoyamada, A., Sasaki, Y.: Quantum Demiric-Selcuk meet-in-the-middle attacks: applications to 6-round generic Feistel constructions. In: International Conference on Security and Cryptography for Networks (pp. 386\u2013403). Springer, Cham (2018)","DOI":"10.1007\/978-3-319-98113-0_21"},{"key":"2844_CR10","doi-asserted-by":"crossref","unstructured":"Hosoyamada, A., Sasaki, Y.: Cryptanalysis against symmetric-key schemes with online classical queries and offline quantum computations. In: Cryptographer\u2019sTrack at the RSA Conference (pp. 198\u2013218). Springer, Cham (2018)","DOI":"10.1007\/978-3-319-76953-0_11"},{"key":"2844_CR11","doi-asserted-by":"crossref","unstructured":"Jaques, S., Naehrig, M., Roetteler, M., Virdia, F.: Implementing Grover oracles for quantum key search on AES and LowMC. In: Annual International Conference on the Theory and Applications of Cryptographic Techniques (pp. 280\u2013310). Springer, Cham (2020)","DOI":"10.1007\/978-3-030-45724-2_10"},{"key":"2844_CR12","unstructured":"Kaplan, M.: Quantum attacks against iterated block ciphers. arXiv preprint arXiv:1410.1434 (2014)"},{"key":"2844_CR13","doi-asserted-by":"crossref","unstructured":"Kaplan, M., Leurent, G., Leverrier, A., Naya-Plasencia, M.: Breaking symmetric cryptosystems using quantum period finding. In: Annual International Cryptology Conference (pp. 207\u2013237). Springer, Berlin (2016)","DOI":"10.1007\/978-3-662-53008-5_8"},{"key":"2844_CR14","first-page":"71","volume":"2016","author":"M Kaplan","year":"2015","unstructured":"Kaplan, M., Leurent, G., Leverrier, A., Naya-Plasencia, M.: Quantum differential and linear cryptanalysis. IACR Trans. Symmetric Cryptol. 2016, 71\u201394 (2015)","journal-title":"IACR Trans. Symmetric Cryptol."},{"key":"2844_CR15","unstructured":"Koch, D., Wessing, L., Alsing, P.M.: Introduction to coding quantum algorithms: a tutorial series using Qiskit. arXiv preprint arXiv:1903.04359 (2019)"},{"key":"2844_CR16","unstructured":"Kuwakado, H., Morii, M.: Security on the quantum-type Even-Mansour cipher. In: 2012 International Symposium on Information Theory and its Applications (pp. 312\u2013316). IEEE (2012)"},{"key":"2844_CR17","unstructured":"Langenberg, B., Pham, H., Steinwandt, R.: Reducing the cost of implementing AES as a quantum circuit. Cryptology ePrint Archive, Report 2019\/854 (2019)"},{"key":"2844_CR18","doi-asserted-by":"crossref","unstructured":"Leander, G., May, A.: Grover meets Simon\u2013quantum attacking the FX-construction. In: International Conference on the Theory and Application of Cryptology and Information Security (pp. 161\u2013178). Springer, Cham (2017)","DOI":"10.1007\/978-3-319-70697-9_6"},{"key":"2844_CR19","unstructured":"Santoli, T., Schaffner, C.: Using Simon\u2019s algorithm to attack symmetric-key cryptographic primitives. arXiv preprint arXiv:1603.07856 (2016)"},{"issue":"4","key":"2844_CR20","doi-asserted-by":"publisher","first-page":"042302","DOI":"10.1103\/PhysRevA.87.042302","volume":"87","author":"P Selinger","year":"2013","unstructured":"Selinger, P.: Quantum circuits of T-depth one. Phys. Rev. A 87(4), 042302 (2013)","journal-title":"Phys. Rev. A"},{"issue":"2","key":"2844_CR21","doi-asserted-by":"publisher","first-page":"303","DOI":"10.1137\/S0036144598347011","volume":"41","author":"PW Shor","year":"1999","unstructured":"Shor, P.W.: Polynomial-time algorithms for prime factorization and discrete logarithms on a quantum computer. SIAM Rev. 41(2), 303\u2013332 (1999)","journal-title":"SIAM Rev."},{"key":"2844_CR22","doi-asserted-by":"crossref","unstructured":"Tannu, S.S., Qureshi, M.K.: Not all qubits are created equal: a case for variability-aware policies for NISQ-era quantum computers. In: Proceedings of the Twenty-Fourth International Conference on Architectural Support for Programming Languages and Operating Systems (pp. 987\u2013999) (2019)","DOI":"10.1145\/3297858.3304007"},{"key":"2844_CR23","doi-asserted-by":"crossref","unstructured":"Wang, Q., Liu, Z., Var?c?, K., Sasaki, Y., Rijmen, V., Todo, Y.: Cryptanalysis of reduced-round SIMON32 and SIMON48. In: International Conference on Cryptology in India (pp. 143\u2013160). Springer, Cham (2014)","DOI":"10.1007\/978-3-319-13039-2_9"},{"key":"2844_CR24","unstructured":"Wiebe, N., Roetteler, M.: Quantum arithmetic and numerical analysis using Repeat-Until-Success circuits. arXiv preprint arXiv:1406.2040 (2014)"},{"key":"2844_CR25","first-page":"235","volume":"1166","author":"A Yamamura","year":"2000","unstructured":"Yamamura, A., Ishizuka, H.: Quantum cryptanalysis of block ciphers. Algebraic systems, formal languages and computations. RIMS Kokyuroku 1166, 235\u2013243 (2000)","journal-title":"RIMS Kokyuroku"},{"key":"2844_CR26","unstructured":"https:\/\/github.com\/raviro\/quantsimon"},{"key":"2844_CR27","unstructured":"https:\/\/csrc.nist.gov\/csrc\/media\/projects\/post-quantum-cryptography\/documents\/call-for-proposals-final-dec-2016.pdf"},{"key":"2844_CR28","unstructured":"https:\/\/nvlpubs.nist.gov\/nistpubs\/FIPS\/NIST.FIPS.197.pdf"},{"key":"2844_CR29","unstructured":"https:\/\/quantum-computing.ibm.com\/"},{"key":"2844_CR30","unstructured":"https:\/\/qiskit.org\/"},{"key":"2844_CR31","unstructured":"https:\/\/en.wikipedia.org\/wiki\/SIMON_(cipher)"}],"container-title":["Quantum Information Processing"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s11128-020-02844-w.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s11128-020-02844-w\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s11128-020-02844-w.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2021,9,12]],"date-time":"2021-09-12T00:08:13Z","timestamp":1631405293000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s11128-020-02844-w"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2020,9]]},"references-count":31,"journal-issue":{"issue":"9","published-print":{"date-parts":[[2020,9]]}},"alternative-id":["2844"],"URL":"https:\/\/doi.org\/10.1007\/s11128-020-02844-w","relation":{},"ISSN":["1570-0755","1573-1332"],"issn-type":[{"value":"1570-0755","type":"print"},{"value":"1573-1332","type":"electronic"}],"subject":[],"published":{"date-parts":[[2020,9]]},"assertion":[{"value":"25 April 2020","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"21 August 2020","order":2,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"12 September 2020","order":3,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}}],"article-number":"340"}}