{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2022,4,4]],"date-time":"2022-04-04T01:29:48Z","timestamp":1649035788173},"reference-count":28,"publisher":"Institute of Electronics, Information and Communications Engineers (IEICE)","issue":"9","content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEICE Trans. Fundamentals"],"published-print":{"date-parts":[[2021,9,1]]},"DOI":"10.1587\/transfun.2020eap1109","type":"journal-article","created":{"date-parts":[[2021,3,15]],"date-time":"2021-03-15T22:08:00Z","timestamp":1615846080000},"page":"1304-1320","source":"Crossref","is-referenced-by-count":0,"title":["Update on Analysis of Lesamnta-LW and New PRF Mode LRF"],"prefix":"10.1587","volume":"E104.A","author":[{"given":"Shoichi","family":"HIROSE","sequence":"first","affiliation":[{"name":"Faculty of Engineering, University of Fukui"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yu","family":"SASAKI","sequence":"additional","affiliation":[{"name":"NTT Secure Platform Laboratories"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Hirotaka","family":"YOSHIDA","sequence":"additional","affiliation":[{"name":"National Institute of Advanced Industrial Science and Technology"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"532","reference":[{"key":"1","doi-asserted-by":"crossref","unstructured":"[1] A. Akhimullah and S. Hirose, \u201cLightweight hashing using Lesamnta-LW compression function mode and MDP domain extension,\u201dCANDAR 2016, pp.590-596, IEEE Computer Society, 2016. 10.1109\/candar.2016.0107","DOI":"10.1109\/CANDAR.2016.0107"},{"key":"2","doi-asserted-by":"publisher","unstructured":"[2] M. Bellare and T. Kohno, \u201cA theoretical treatment of related-key attacks: RKA-PRPs, RKA-PRFs, and applications,\u201d E. Biham, ed., EUROCRYPT 2003, volume 2656 of LNCS, pp.491-506. Springer, 2003. 10.1007\/3-540-39200-9_31","DOI":"10.1007\/3-540-39200-9_31"},{"key":"3","unstructured":"[3] G. Bertoni, J. Daemen, M. Peeters, and G.V. Assche, \u201cPermutation-based encryption, authentication and authenticated encryption,\u201d Workshop Records of DIAC 2012, pp.159-170, 2012."},{"key":"4","doi-asserted-by":"publisher","unstructured":"[4] C. Bouillaguet, O. Dunkelman, G. Leurent, and P. Fouque, \u201cAnother look at complementation properties,\u201dS. Hong and T. Iwata, eds., FSE 2010, volume 6147 of LNCS, pp.347-364, Springer, 2010. 10.1007\/978-3-642-13858-4_20","DOI":"10.1007\/978-3-642-13858-4_20"},{"key":"5","unstructured":"[5] J. Daemen and V. Rijmen, AES Proposal: Rijndael (Document version 2), Submission to NIST, 1999."},{"key":"6","doi-asserted-by":"crossref","unstructured":"[6] C. Guo, O. Pereira, T. Peters, and F. Standaert, \u201cAuthenticated encryption with nonce misuse and physical leakage: Definitions, separation results and first construction-(extended abstract),\u201d P. Schwabe and N. Th\u00e9riault, eds., LATINCRYPT 2019, volume 11774 of LNCS, pp.150-172, Springer, 2019. 10.1007\/978-3-030-30530-7_8","DOI":"10.1007\/978-3-030-30530-7_8"},{"key":"7","unstructured":"[7] H. Handschuh and D. Naccache, SHACAL, Modifications to NESSIE submissions selected for 2nd Phase, 2001."},{"key":"8","doi-asserted-by":"crossref","unstructured":"[8] S. Hirose, K. Ideguchi, H. Kuwakado, T. Owada, B. Preneel, and H. Yoshida, \u201cA lightweight 256-bit hash function for hardware and low-end devices: Lesamnta-LW,\u201d K.H. Rhee and D. Nyang, eds., ICISC 2010, volume 6829 of LNCS, pp.151-168, Springer, 2010. 10.1007\/978-3-642-24209-0_10","DOI":"10.1007\/978-3-642-24209-0_10"},{"key":"9","doi-asserted-by":"publisher","unstructured":"[9] S. Hirose, K. Ideguchi, H. Kuwakado, T. Owada, B. Preneel, and H. Yoshida, \u201cAn AES based 256-bit hash function for lightweight applications: Lesamnta-LW,\u201d IEICE Trans. Fundamentals, vol.E95-A, no.1, pp.89-99, Jan. 2012. 10.1587\/transfun.e95.a.89","DOI":"10.1587\/transfun.E95.A.89"},{"key":"10","doi-asserted-by":"publisher","unstructured":"[10] S. Hirose and H. Kuwakado, \u201cEfficient pseudorandom-function modes of a block-cipher-based hash function,\u201d IEICE Trans. Fundamentals, vol.E92-A, no.10, pp.2447-2453, Oct. 2009. 10.1587\/transfun.e92.a.2447","DOI":"10.1587\/transfun.E92.A.2447"},{"key":"11","unstructured":"[11] S. Hirose, H. Kuwakado, and H. Yoshida, \u201cSHA-3 Proposal: Lesamnta,\u201d Submission to NIST, 2008."},{"key":"12","unstructured":"[12] S. Hirose, H. Kuwakado, and H. Yoshida, \u201cA minor change to Lesamnta \u2014 Change of round constants \u2014 ,\u201d Available at webpage, 2010."},{"key":"13","doi-asserted-by":"crossref","unstructured":"[13] S. Hirose, H. Kuwakado, and H. Yoshida, \u201cA pseudorandom-function mode based on Lesamnta-LW and the MDP domain extension and its applications,\u201d IEICE Trans. Fundamentals, vol.E101-A, no.1, pp.110-118, Jan. 2018.","DOI":"10.1587\/transfun.E101.A.110"},{"key":"14","doi-asserted-by":"crossref","unstructured":"[14] S. Hirose, Y. Sasaki, and H. Yoshida, \u201cLesamnta-LW revisited: Improved security analysis of primitive and new PRF mode,\u201d M. Conti, J. Zhou, E. Casalicchio, and A. Spognardi, eds., ACNS 2020, volume 12146 of LNCS, pp.89-109. Springer, 2020. 10.1007\/978-3-030-57808-4_5","DOI":"10.1007\/978-3-030-57808-4_5"},{"key":"15","unstructured":"[15] G.O. Inc. Gurobi optimizer 7.0. Official webpage, http:\/\/www.gurobi.com\/, 2016."},{"key":"16","unstructured":"[16] ISO\/IEC JTC 1. ISO\/IEC 18033-4-5:2005 Information technology-Security techniques-Encryption algorithms-Part 4: Stream ciphers, first edition, July 2005."},{"key":"17","unstructured":"[17] ISO\/IEC JTC 1. ISO\/IEC 29192-5:2016 Information technology-Security techniques-Lightweight cryptography-Part 5: Hash-functions, first edition, Aug. 2016."},{"key":"18","unstructured":"[18] ISO\/IEC JTC 1. ISO\/IEC 29192-6:2019 Information technology-Security techniques-Lightweight cryptography-Part 6: Message Authentication Codes, first edition edition, Sept. 2019."},{"key":"19","doi-asserted-by":"crossref","unstructured":"[19] K. Kondo, Y. Sasaki, and T. Iwata, \u201cOn the design rationale of Simon block cipher: Integral attacks and impossible differential attacks against Simon variants,\u201d M. Manulis, A. Sadeghi, and S. Schneider, eds., ACNS 2016, volume 9696 of LNCS, pp.518-536, Springer, 2016. 10.1007\/978-3-319-39555-5_28","DOI":"10.1007\/978-3-319-39555-5_28"},{"key":"20","doi-asserted-by":"publisher","unstructured":"[20] M. Matsui, \u201cLinear cryptanalysis method for DES cipher,\u201d T. Helleseth, ed., EUROCRYPT&apos;93, volume 765 of LNCS, pp.386-397, Springer, 1993. 10.1007\/3-540-48285-7_33","DOI":"10.1007\/3-540-48285-7_33"},{"key":"21","doi-asserted-by":"publisher","unstructured":"[21] M. Matsui, \u201cOn correlation between the order of S-boxes and the strength of DES,\u201d A.D. Santis, ed., EUROCRYPT&apos;94, volume 950 of LNCS, pp.366-375, Springer, 1994. 10.1007\/bfb0053451","DOI":"10.1007\/BFb0053451"},{"key":"22","doi-asserted-by":"crossref","unstructured":"[22] N. Mouha, Q. Wang, D. Gu, and B. Preneel, \u201cDifferential and linear cryptanalysis using mixed-integer linear programming,\u201d C. Wu, M. Yung, and D. Lin, eds., Inscrypt 2011, volume 7537 of LNCS, pp.57-76, Springer, 2011. 10.1007\/978-3-642-34704-7_5","DOI":"10.1007\/978-3-642-34704-7_5"},{"key":"23","unstructured":"[23] National Institute of Standards and Technology, FIPS 197: Advanced Encryption Standard (AES), Nov. 2001. 10.6028\/nist.fips.197"},{"key":"24","unstructured":"[24] National Institute of Standards and Technology, FIPS 202, SHA-3 Standard: Permutation-Based Hash and Extendable-Output Functions, Aug. 2015. 10.6028\/nist.fips.202"},{"key":"25","doi-asserted-by":"crossref","unstructured":"[25] O. Pereira, F. Standaert, and S. Vivek, \u201cLeakage-resilient authentication and encryption from symmetric cryptographic primitives,\u201d Proc. 22nd ACM SIGSAC, pp.96-108, 2015. 10.1145\/2810103.2813626","DOI":"10.1145\/2810103.2813626"},{"key":"26","doi-asserted-by":"crossref","unstructured":"[26] N. Pramstaller, C. Rechberger, and V. Rijmen, \u201cImpact of rotations in SHA-1 and related hash functions,\u201d B. Preneel and S.E. Tavares, eds., SAC 2005, volume 3897 of LNCS, pp.261-275, Springer, 2005. 10.1007\/11693383_18","DOI":"10.1007\/11693383_18"},{"key":"27","doi-asserted-by":"publisher","unstructured":"[27] D. Watanabe, S. Furuya, H. Yoshida, K. Takaragi, and B. Preneel, \u201cA new keystream generator MUGI,\u201d J. Daemen and V. Rijmen, eds., FSE 2002, volume 2365 of LNCS, pp.179-194, Springer, 2002. 10.1007\/3-540-45661-9_14","DOI":"10.1007\/3-540-45661-9_14"},{"key":"28","doi-asserted-by":"crossref","unstructured":"[29] Y. Zhang, S. Sun, J. Cai, and L. Hu, \u201cSpeeding up MILP aided differential characteristic search with Matsui&apos;s strategy,\u201d L. Chen, M. Manulis, and S. Schneider, eds., ISC 2018, volume 11060 of LNCS, pp.101-115, Springer, 2018. 10.1007\/978-3-319-99136-8_6","DOI":"10.1007\/978-3-319-99136-8_6"}],"container-title":["IEICE Transactions on Fundamentals of Electronics, Communications and Computer Sciences"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/www.jstage.jst.go.jp\/article\/transfun\/E104.A\/9\/E104.A_2020EAP1109\/_pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2021,9,4]],"date-time":"2021-09-04T03:26:43Z","timestamp":1630726003000},"score":1,"resource":{"primary":{"URL":"https:\/\/www.jstage.jst.go.jp\/article\/transfun\/E104.A\/9\/E104.A_2020EAP1109\/_article"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2021,9,1]]},"references-count":28,"journal-issue":{"issue":"9","published-print":{"date-parts":[[2021]]}},"URL":"https:\/\/doi.org\/10.1587\/transfun.2020eap1109","relation":{},"ISSN":["0916-8508","1745-1337"],"issn-type":[{"value":"0916-8508","type":"print"},{"value":"1745-1337","type":"electronic"}],"subject":[],"published":{"date-parts":[[2021,9,1]]},"article-number":"2020EAP1109"}}