{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,8]],"date-time":"2026-03-08T23:48:31Z","timestamp":1773013711534,"version":"3.50.1"},"reference-count":17,"publisher":"Institution of Engineering and Technology (IET)","issue":"1","license":[{"start":{"date-parts":[[2025,9,24]],"date-time":"2025-09-24T00:00:00Z","timestamp":1758672000000},"content-version":"vor","delay-in-days":266,"URL":"http:\/\/creativecommons.org\/licenses\/by\/4.0\/"},{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/doi.wiley.com\/10.1002\/tdm_license_1.1"}],"funder":[{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62402522"],"award-info":[{"award-number":["62402522"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100006407","name":"Natural Science Foundation of Henan Province","doi-asserted-by":"publisher","award":["222300420100"],"award-info":[{"award-number":["222300420100"]}],"id":[{"id":"10.13039\/501100006407","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["ietresearch.onlinelibrary.wiley.com"],"crossmark-restriction":true},"short-container-title":["IET Information Security"],"published-print":{"date-parts":[[2025,1]]},"abstract":"<jats:p>L\u2010Feistel structure is a new iterative block cipher structure and unifies the Feistel structure and the Lai\u2013Massey structure while maintaining the similarity of encryption and decryption. In this study, we present the first yoyo cryptanalysis against the L\u2010Feistel structure to evaluate the security under structural attack and give the method to recover the secret round function. We construct the fundamental yoyo distinguisher for the three\u2010round L\u2010Feistel structure, which can be used to distinguish the L\u2010Feistel structure from random permutation and establish the linear equations of the secret round functions. Besides, the fundamental yoyo distinguisher can be extended to more rounds when the invertible linear transformations are given. Then the equivalent structures of the L\u2010Feistel structure are provided, which helps reduce the guess of the starting point of the secret round functions. Finally, the process of recovering the secret round functions for the three\u2010round L\u2010Feistel structure is presented. We believe this study will enrich the application of yoyo cryptanalysis and L\u2010Feistel structure.<\/jats:p>","DOI":"10.1049\/ise2\/3355095","type":"journal-article","created":{"date-parts":[[2025,9,25]],"date-time":"2025-09-25T06:33:38Z","timestamp":1758782018000},"update-policy":"https:\/\/doi.org\/10.1002\/crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["Yoyo Cryptanalysis Against Reduced\u2010Round L\u2010Feistel Structure for Recovering the Secret Components"],"prefix":"10.1049","volume":"2025","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-8332-0047","authenticated-orcid":false,"given":"Jiyan","family":"Zhang","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0009-0002-9063-659X","authenticated-orcid":false,"given":"Yuxin","family":"Niu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-5868-4191","authenticated-orcid":false,"given":"Zhen","family":"Shi","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-8074-4581","authenticated-orcid":false,"given":"Ting","family":"Cui","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"265","published-online":{"date-parts":[[2025,9,24]]},"reference":[{"key":"e_1_2_11_1_2","doi-asserted-by":"publisher","DOI":"10.1007\/s00145-010-9062-1"},{"key":"e_1_2_11_2_2","doi-asserted-by":"publisher","DOI":"10.1007\/s00145-017-9272-x"},{"key":"e_1_2_11_3_2","doi-asserted-by":"crossref","unstructured":"BiryukovA.andPerrinL. On Reverse-Engineering S-Boxes With Hidden Design Criteria or Structure Advances in Cryptology\u2014CRYPTO 2015 2015 Springer 116\u2013140.","DOI":"10.1007\/978-3-662-47989-6_6"},{"key":"e_1_2_11_4_2","doi-asserted-by":"publisher","DOI":"10.1007\/3-540-44987-6_24"},{"key":"e_1_2_11_5_2","doi-asserted-by":"crossref","unstructured":"MinaudB. DerbezP. FouqueP. andKarpmanP. Key-Recovery Attacks on ASASA 3 21st International Conference on the Theory and Application of Cryptology and Information Security 2015 Springer.","DOI":"10.1007\/978-3-662-48800-3_1"},{"key":"e_1_2_11_6_2","first-page":"226","article-title":"Multiset-Algebraic Cryptanalysis of Reduced Kuznyechik, Khazad, and Secret SPNs","volume":"2","author":"Biryukov A.","year":"2016","journal-title":"lIACR Transactions on Symmetric Cryptology"},{"key":"e_1_2_11_7_2","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2021.3108435"},{"key":"e_1_2_11_8_2","doi-asserted-by":"crossref","unstructured":"BihamE. BiryukovA. DunkelmanO. RichardsonE. andShamirA. Initial Observations on Skipjack: Cryptanalysis of Skipjack-3xor 5th Annual Workshops on Selected Areas in Cryptography 1998 Springer 362\u2013375.","DOI":"10.1007\/3-540-48892-8_27"},{"key":"e_1_2_11_9_2","doi-asserted-by":"crossref","unstructured":"BiryukovA. LeurentG. andPerrinL. Cryptanalysis of Feistel Networks with Secret round Functions 22nd International Conference Revised Selected Papers 2015 Springer 102\u2013121.","DOI":"10.1007\/978-3-319-31301-6_6"},{"key":"e_1_2_11_10_2","doi-asserted-by":"crossref","unstructured":"R\u00f8njomS. BardehN. G. andHellesethT. Yoyo Tricks With AES 23rd International Conference on the Theory and Applications of Cryptology and Information Security 2017 Springer 217\u2013243.","DOI":"10.1007\/978-3-319-70694-8_8"},{"key":"e_1_2_11_11_2","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2019.2918350"},{"key":"e_1_2_11_12_2","doi-asserted-by":"publisher","DOI":"10.1049\/ise2.12035"},{"key":"e_1_2_11_13_2","doi-asserted-by":"publisher","DOI":"10.1007\/s10623-024-01408-8"},{"key":"e_1_2_11_14_2","doi-asserted-by":"publisher","DOI":"10.1049\/ise2.12098"},{"key":"e_1_2_11_15_2","doi-asserted-by":"crossref","unstructured":"BogdanovA. KnudsenL. R. andLeanderG. et al.PRESENT: An Ultra-Lightweight Block Cipher Cryptographic Hardware and Embedded Systems 2007 Springer 450\u2013466.","DOI":"10.1007\/978-3-540-74735-2_31"},{"key":"e_1_2_11_16_2","doi-asserted-by":"publisher","DOI":"10.1007\/s00145-021-09398-9"},{"key":"e_1_2_11_17_2","unstructured":"DaemenJ.andRijmenV. AES Proposal: Rijndael 1999."}],"container-title":["IET Information Security"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/ietresearch.onlinelibrary.wiley.com\/doi\/pdf\/10.1049\/ise2\/3355095","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/ietresearch.onlinelibrary.wiley.com\/doi\/full-xml\/10.1049\/ise2\/3355095","content-type":"application\/xml","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/ietresearch.onlinelibrary.wiley.com\/doi\/pdf\/10.1049\/ise2\/3355095","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,3,8]],"date-time":"2026-03-08T22:33:22Z","timestamp":1773009202000},"score":1,"resource":{"primary":{"URL":"https:\/\/ietresearch.onlinelibrary.wiley.com\/doi\/10.1049\/ise2\/3355095"}},"subtitle":[],"editor":[{"given":"Richard","family":"Jiang","sequence":"additional","affiliation":[],"role":[{"role":"editor","vocabulary":"crossref"}]}],"short-title":[],"issued":{"date-parts":[[2025,1]]},"references-count":17,"journal-issue":{"issue":"1","published-print":{"date-parts":[[2025,1]]}},"alternative-id":["10.1049\/ise2\/3355095"],"URL":"https:\/\/doi.org\/10.1049\/ise2\/3355095","archive":["Portico"],"relation":{},"ISSN":["1751-8709","1751-8717"],"issn-type":[{"value":"1751-8709","type":"print"},{"value":"1751-8717","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025,1]]},"assertion":[{"value":"2025-01-25","order":0,"name":"received","label":"Received","group":{"name":"publication_history","label":"Publication History"}},{"value":"2025-09-01","order":2,"name":"accepted","label":"Accepted","group":{"name":"publication_history","label":"Publication History"}},{"value":"2025-09-24","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}],"article-number":"3355095"}}