{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,2,21]],"date-time":"2025-02-21T12:59:08Z","timestamp":1740142748731,"version":"3.37.3"},"reference-count":27,"publisher":"Oxford University Press (OUP)","issue":"6","license":[{"start":{"date-parts":[[2021,2,13]],"date-time":"2021-02-13T00:00:00Z","timestamp":1613174400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/academic.oup.com\/journals\/pages\/open_access\/funder_policies\/chorus\/standard_publication_model"}],"funder":[{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["61772517","61902030","61772516"],"award-info":[{"award-number":["61772517","61902030","61772516"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100009592","name":"Beijing Municipal Science and Technology Commission","doi-asserted-by":"publisher","award":["Z191100007119004"],"award-info":[{"award-number":["Z191100007119004"]}],"id":[{"id":"10.13039\/501100009592","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100004739","name":"Youth Innovation Promotion Association CAS","doi-asserted-by":"publisher","id":[{"id":"10.13039\/501100004739","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2022,6,16]]},"abstract":"<jats:title>Abstract<\/jats:title>\n               <jats:p>The division property method is a technique for automatic searching integral distinguishers on block ciphers. Previous methods only use word-based division property to search integral distinguishers for block ciphers with large S-boxes. Since using bit-based division property may find longer integral distinguishers than word-based division property, we propose a method to automatically search the integral distinguishers based on bit-based division property for block ciphers with large S-boxes. To achieve this goal, we propose a new division property propagation table for S-boxes. Theoretically, we prove that using both the new table and the traditional method to describe the bit-based division property propagation rule of S-box will lead to the same integral distinguishers. Technically, we design a mixed-integer linear programming-based tool to search the integral distinguisher based on the new table, which helps to search new integral distinguishers for block ciphers with large S-boxes efficiently. As a result, we apply our tool to derive new integral distinguishers and get the tight bound on the rounds that no integral distinguishers exist for ICEBERG, KHAZAD, Camellia, CS-Cipher, ITUbee and SMS4. Besides, to show the availability of our integral distinguishers, we form the present best five-round and the first six-round integral attack for ICEBERG as an example.<\/jats:p>","DOI":"10.1093\/comjnl\/bxaa203","type":"journal-article","created":{"date-parts":[[2020,12,31]],"date-time":"2020-12-31T12:10:36Z","timestamp":1609416636000},"page":"1560-1573","source":"Crossref","is-referenced-by-count":0,"title":["New Division Property Propagation Table: Applications to Block Ciphers with Large S-boxes"],"prefix":"10.1093","volume":"65","author":[{"given":"Xichao","family":"Hu","sequence":"first","affiliation":[{"name":"State Key Laboratory of Information Security , Institute of Information Engineering, Chinese Academy of Sciences, Beijing, China"},{"name":"School of Cyber Security , University of Chinese Academy of Sciences, Beijing, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yongqiang","family":"Li","sequence":"additional","affiliation":[{"name":"State Key Laboratory of Information Security , Institute of Information Engineering, Chinese Academy of Sciences, Beijing, China"},{"name":"School of Cyber Security , University of Chinese Academy of Sciences, Beijing, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Lin","family":"Jiao","sequence":"additional","affiliation":[{"name":"State Key Laboratory of Cryptology , Beijing, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Mingsheng","family":"Wang","sequence":"additional","affiliation":[{"name":"State Key Laboratory of Information Security , Institute of Information Engineering, Chinese Academy of Sciences, Beijing, China"},{"name":"School of Cyber Security , University of Chinese Academy of Sciences, Beijing, China"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"286","published-online":{"date-parts":[[2021,2,13]]},"reference":[{"key":"2022061614515349900_ref1","doi-asserted-by":"crossref","first-page":"149","DOI":"10.1007\/BFb0052343","article-title":"The Block Cipher Square","volume-title":"4th Int. Workshop on Fast Software Encryption, FSE \u201897","author":"Daemen","year":"1997"},{"key":"2022061614515349900_ref2","first-page":"112","article-title":"Integral Cryptanalysis","volume-title":"9th Int. Workshop on Fast Software Encryption, FSE 2002","author":"Knudsen","year":"2002"},{"key":"2022061614515349900_ref3","first-page":"363","article-title":"Bit-Pattern Based Integral Attack","volume-title":"15th Int. Workshop on Fast Software Encryption, FSE 2008","author":"Z\u2019aba","year":"2008"},{"key":"2022061614515349900_ref4","first-page":"287","article-title":"Structural Evaluation by Generalized Integral Property","volume-title":"34th Annual Int. Conf. Theory and Applications of Cryptographic Techniques","author":"Todo","year":"2015"},{"key":"2022061614515349900_ref5","doi-asserted-by":"crossref","first-page":"413","DOI":"10.1007\/978-3-662-47989-6_20","article-title":"Integral Cryptanalysis on Full MISTY1","volume-title":"35th Annual Cryptology Conf. Advances in Cryptology, CRYPTO 2015","author":"Todo","year":"2015"},{"key":"2022061614515349900_ref6","first-page":"357","article-title":"Bit-Based Division Property and Application to SIMON Family","volume-title":"23rd Int. Conf. Fast Software Encryption, FSE 2016","author":"Todo","year":"2016"},{"key":"2022061614515349900_ref7","first-page":"648","article-title":"Applying MILP Method to Searching Integral Distinguishers Based on Division Property for 6 Lightweight Block Ciphers","volume-title":"22nd Int. Conf. Theory and Application of Cryptology and Information Security","author":"Xiang","year":"2016"},{"key":"2022061614515349900_ref8","first-page":"811","article-title":"MILP-Aided bit-based division property for primitives with non-bit-permutation linear layers","volume":"2016","author":"Sun","year":"2016","journal-title":"IACR Cryptol. ePrint Arch."},{"key":"2022061614515349900_ref9","first-page":"1101","article-title":"MILP-Aided bit-based division property for ARX-based block cipher","volume":"2016","author":"Sun","year":"2016","journal-title":"IACR Cryptol. ePrint Arch."},{"key":"2022061614515349900_ref10","doi-asserted-by":"crossref","first-page":"87","DOI":"10.1049\/iet-ifs.2018.5151","article-title":"Division cryptanalysis of block ciphers with a binary diffusion layer","volume":"13","author":"Zhang","year":"2019","journal-title":"IET Inf. Secur."},{"key":"2022061614515349900_ref11","doi-asserted-by":"crossref","first-page":"123","DOI":"10.1007\/978-3-662-53008-5_5","article-title":"The SKINNY Family of Block Ciphers and Its Low-Latency Variant MANTIS","volume-title":"36th Annual Int. Cryptology Conf. Advances in Cryptology, CRYPTO 2016","author":"Beierle","year":"2016"},{"key":"2022061614515349900_ref12","first-page":"411","article-title":"Midori: A Block Cipher for Low Energy","volume-title":"21st Int. Conf. Theory and Application of Cryptology and Information Security","author":"Banik","year":"2015"},{"key":"2022061614515349900_ref13","first-page":"128","article-title":"Automatic Search of Bit-Based Division Property for ARX Ciphers and Word-Based Division Property","volume-title":"23rd Int. Conf. Theory and Applications of Cryptology and Information Security","author":"Sun","year":"2017"},{"key":"2022061614515349900_ref14","first-page":"279","article-title":"ICEBERG: An Involutional Cipher Efficient for Block Encryption in Reconfigurable Hardware","volume-title":"11th Int. Workshop on Fast Software Encryption, FSE 2004","author":"Standaert","year":"2004"},{"key":"2022061614515349900_ref15","article-title":"The KHAZAD legacy-level block cipher","author":"Barreto","year":"2002","journal-title":"Submission to the NESSIE Project"},{"key":"2022061614515349900_ref16","first-page":"370","article-title":"Bit-Pattern Based Integral Attack on ICEBERG","volume-title":"2015 Int. Conf. Intelligent Networking and Collaborative Systems, INCoS 2015","author":"Wei","year":"2015"},{"key":"2022061614515349900_ref17","doi-asserted-by":"crossref","first-page":"39","DOI":"10.1007\/3-540-44983-3_4","article-title":"Camellia: A 128-Bit Block Cipher Suitable for Multiple Platforms\u2014Design and Analysis","volume-title":"Selected Areas in Cryptography","author":"Aoki","year":"2001"},{"key":"2022061614515349900_ref18","doi-asserted-by":"crossref","first-page":"189","DOI":"10.1007\/3-540-69710-1_13","article-title":"Cs-Cipher","volume-title":"5th Int. Workshop on Fast Software Encryption, FSE \u201898","author":"Stern","year":"1998"},{"key":"2022061614515349900_ref19","first-page":"16","article-title":"ITUbee: A Software Oriented Lightweight Block Cipher","volume-title":"Second Int. Workshop on Lightweight Cryptography for Security and Privacy, LightSec 2013","author":"Karako\u00e7","year":"2013"},{"key":"2022061614515349900_ref20","article-title":"Specification of SMS4, block cipher for WLAN products\u2014SMS4 (in Chinese)"},{"key":"2022061614515349900_ref21","doi-asserted-by":"crossref","first-page":"396","DOI":"10.46586\/tosc.v2020.i1.396-424","article-title":"Finding bit-based division property for ciphers with complex linear layers","volume":"2020","author":"Hu","year":"2020","journal-title":"IACR Trans. Symmetric Cryptol."},{"key":"2022061614515349900_ref22","first-page":"115","article-title":"Finding Integral Distinguishers with Ease","volume-title":"25th Int. Conf. Selected Areas in Cryptography, SAC 2018","author":"Eskandari","year":"2018"},{"key":"2022061614515349900_ref23","doi-asserted-by":"crossref","first-page":"654","DOI":"10.1007\/978-3-662-53018-4_24","article-title":"Another View of the Division Property","volume-title":"36th Annual Int. Cryptology Conf. Advances in Cryptology, CRYPTO 2016","author":"Boura","year":"2016"},{"key":"2022061614515349900_ref24","first-page":"147","article-title":"On the Division Property of SIMON48 and SIMON64","volume-title":"11th Int. Workshop on Security, IWSEC 2016. Advances in Information and Computer Security","author":"Xiang","year":"2016"},{"key":"2022061614515349900_ref25","doi-asserted-by":"crossref","first-page":"450","DOI":"10.1007\/978-3-540-74735-2_31","article-title":"PRESENT: An Ultra-Lightweight Block Cipher","volume-title":"9th Int. Workshop on Cryptographic Hardware and Embedded Systems, CHES 2007","author":"Bogdanov","year":"2007"},{"key":"2022061614515349900_ref26","doi-asserted-by":"crossref","first-page":"99","DOI":"10.46586\/tosc.v2017.i4.99-129","article-title":"MILP modeling for (large) s-boxes to optimize probability of differential characteristics","volume":"2017","author":"Abdelkhalek","year":"2017","journal-title":"IACR Trans. Symmetric Cryptol."},{"key":"2022061614515349900_ref27","first-page":"213","article-title":"Improved Cryptanalysis of Rijndael","volume-title":"7th Int. Workshop on Fast Software Encryption, FSE 2000","author":"Ferguson","year":"2000"}],"container-title":["The Computer Journal"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/academic.oup.com\/comjnl\/article-pdf\/65\/6\/1560\/44080937\/bxaa203.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"syndication"},{"URL":"https:\/\/academic.oup.com\/comjnl\/article-pdf\/65\/6\/1560\/44080937\/bxaa203.pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,6,16]],"date-time":"2022-06-16T14:53:28Z","timestamp":1655391208000},"score":1,"resource":{"primary":{"URL":"https:\/\/academic.oup.com\/comjnl\/article\/65\/6\/1560\/6134263"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2021,2,13]]},"references-count":27,"journal-issue":{"issue":"6","published-online":{"date-parts":[[2021,2,13]]},"published-print":{"date-parts":[[2022,6,16]]}},"URL":"https:\/\/doi.org\/10.1093\/comjnl\/bxaa203","relation":{},"ISSN":["0010-4620","1460-2067"],"issn-type":[{"type":"print","value":"0010-4620"},{"type":"electronic","value":"1460-2067"}],"subject":[],"published-other":{"date-parts":[[2022,6]]},"published":{"date-parts":[[2021,2,13]]}}}