{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,9,11]],"date-time":"2025-09-11T19:02:51Z","timestamp":1757617371596,"version":"3.44.0"},"reference-count":23,"publisher":"Institute of Electronics, Information and Communications Engineers (IEICE)","issue":"9","content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEICE Trans. Fundamentals"],"published-print":{"date-parts":[[2025,9,1]]},"DOI":"10.1587\/transfun.2024dmp0008","type":"journal-article","created":{"date-parts":[[2025,3,23]],"date-time":"2025-03-23T18:06:59Z","timestamp":1742753219000},"page":"1175-1195","source":"Crossref","is-referenced-by-count":0,"title":["Improved Differential-Linear Cryptanalysis of Reduced Rounds of ChaCha Permutation"],"prefix":"10.1587","volume":"E108.A","author":[{"given":"Yurie","family":"OKADA","sequence":"first","affiliation":[{"name":"Graduate School of Engineering, Osaka University"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Ryo","family":"WATANABE","sequence":"additional","affiliation":[{"name":"Panasonic Automotive Systems Co., Ltd."}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Nasratullah","family":"GHAFOORI","sequence":"additional","affiliation":[{"name":"Graduate School of Engineering, Osaka University"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Atsuko","family":"MIYAJI","sequence":"additional","affiliation":[{"name":"Graduate School of Engineering, Osaka University"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"532","reference":[{"key":"1","unstructured":"[1] D.J. Bernstein, \u201cChacha, a variant of Salsa20,\u201d Workshop Record of SASC, pp.1-6, 2008."},{"key":"2","doi-asserted-by":"crossref","unstructured":"[2] A. Langley, W. Chang, N. Mavrogiannopoulos, J. Strombergson, and S. Josefsson, \u201cChacha20-Poly1305 cipher suites for transport layer security (TLS),\u201d Technical Report, 2016.","DOI":"10.17487\/RFC7905"},{"key":"3","doi-asserted-by":"crossref","unstructured":"[4] Z. Shi, B. Zhang, D. Feng, and W. Wu, \u201cImproved key recovery attacks on reduced-round Salsa20 and ChaCha,\u201d ICISC 2012, LNCS, vol.7839, pp.337-351, Springer Berlin Heidelberg, 2012. 10.1007\/978-3-642-37682-5_24","DOI":"10.1007\/978-3-642-37682-5_24"},{"key":"4","doi-asserted-by":"publisher","unstructured":"[5] S. Maitra, \u201cChosen IV cryptanalysis on reduced round ChaCha and Salsa,\u201d Discret. Appl. Math., vol.208, pp.88-97, 2016. 10.1016\/j.dam.2016.02.020","DOI":"10.1016\/j.dam.2016.02.020"},{"key":"5","doi-asserted-by":"publisher","unstructured":"[19] A.R. Choudhuri and S. Maitra, \u201cSignificantly improved multi-bit differentials for reduced round Salsa and ChaCha,\u201d IACR Trans. Symmetric Cryptol., vol.2016, no.2, pp.261-287, 2016. 10.46586\/tosc.v2016.i2.261-287","DOI":"10.46586\/tosc.v2016.i2.261-287"},{"key":"6","doi-asserted-by":"publisher","unstructured":"[7] S. Dey and S. Sarkar, \u201cImproved analysis for reduced round Salsa and Chacha,\u201d Discret. Appl. Math., vol.227, pp.58-69, 2017. 10.1016\/j.dam.2017.04.034","DOI":"10.1016\/j.dam.2017.04.034"},{"key":"7","unstructured":"[8] M. Coutinho and T. Neto, \u201cNew multi-bit differentials to improve attacks against ChaCha,\u201d IACR Cryptol. ePrint Arch., Paper 2020\/350, 2020."},{"key":"8","doi-asserted-by":"publisher","unstructured":"[9] C. Beierle, M. Broll, F. Canale, N. David, A. Fl\u00f3rez-Guti\u00e9rrez, G. Leander, M. Naya-Plasencia, and Y. Todo, \u201cImproved differential-linear attacks with applications to ARX ciphers,\u201d J. Cryptol., vol.35, no.4, p.29, 2022. 10.1007\/s00145-022-09437-z","DOI":"10.1007\/s00145-022-09437-z"},{"key":"9","unstructured":"[10] S. Miyashita, R. Ito, and A. Miyaji, \u201cPNB-focused differential cryptanalysis of ChaCha stream cipher,\u201d Cryptology ePrint Archive, Report 2021\/1537, 2021. https:\/\/ia.cr\/2021\/1537"},{"key":"10","doi-asserted-by":"crossref","unstructured":"[11] S. Dey, H.K. Garai, S. Sarkar, and N.K. Sharma, \u201cRevamped differential-linear cryptanalysis on reduced round ChaCha,\u201d EUROCRYPT 2022, Proceedings, Part III, O. Dunkelman and S. Dziembowski, eds., LNCS, vol.13277, pp.86-114, Springer, 2022. 10.1007\/978-3-031-07082-2_4","DOI":"10.1007\/978-3-031-07082-2_4"},{"key":"11","doi-asserted-by":"crossref","unstructured":"[12] Z. Niu, S. Sun, Y. Liu, and C. Li, \u201cRotational differential-linear distinguishers of ARX ciphers with arbitrary output linear masks,\u201d CRYPTO 2022, Proceedings, Part I, pp.3-32, Springer, 2022. 10.1007\/978-3-031-15802-5_1","DOI":"10.1007\/978-3-031-15802-5_1"},{"key":"12","doi-asserted-by":"crossref","unstructured":"[13] M. Coutinho, I. Passos, J.C. Grados V\u00e1squez, F.L. de Mendon\u00e7a, R.T. de Sousa, Jr., and F. Borges, \u201cLatin dances reloaded: Improved cryptanalysis against Salsa and ChaCha, and the proposal of Forr\u00f3,\u201d ASIACRYPT 2022, Proceedings, Part I, pp.256-286, Springer, 2023. 10.1007\/978-3-031-22963-3_9","DOI":"10.1007\/978-3-031-22963-3_9"},{"key":"13","doi-asserted-by":"crossref","unstructured":"[14] N. Ghafoori and A. Miyaji, \u201cDifferential cryptanalysis of Salsa20 based on comprehensive analysis of PNBs,\u201d ISPEC, pp.520-536, Springer, 2022. 10.1007\/978-3-031-21280-2_29","DOI":"10.1007\/978-3-031-21280-2_29"},{"key":"14","doi-asserted-by":"crossref","unstructured":"[15] S. Dey, H.K. Garai, and S. Maitra, \u201cCryptanalysis of reduced round ChaCha-new attack and deeper analysis,\u201d Cryptology ePrint Archive, Paper 2023\/134, 2023.","DOI":"10.46586\/tosc.v2023.i1.89-110"},{"key":"15","doi-asserted-by":"publisher","unstructured":"[16] E. Bellini, D. Gerault, J. Grados, R.H. Makarim, and T. Peyrin, \u201cBoosting differential-linear cryptanalysis of ChaCha7 with MILP,\u201d ToSC, pp.189-223, 2023. 10.46586\/tosc.v2023.i2.189-223","DOI":"10.46586\/tosc.v2023.i2.189-223"},{"key":"16","doi-asserted-by":"crossref","unstructured":"[17] R. Watanabe, N. Ghafoori, and A. Miyaji, \u201cImproved differential-linear cryptanalysis of reduced rounds of ChaCha,\u201d Information Security Applications, H. Kim and J. Youn, eds., Singapore, pp.269-281, Springer Nature Singapore, 2024. 10.1007\/978-981-99-8024-6_21","DOI":"10.1007\/978-981-99-8024-6_21"},{"key":"17","doi-asserted-by":"crossref","unstructured":"[18] M. Coutinho and T.C.S. Neto, \u201cImproved linear approximations to ARX ciphers and attacks against ChaCha,\u201d EUROCRYPT 2021, Proceedings, Part I, LNCS, vol.12696, pp.711-740, Springer, 2021. 10.1007\/978-3-030-77870-5_25","DOI":"10.1007\/978-3-030-77870-5_25"},{"key":"18","doi-asserted-by":"publisher","unstructured":"[19] A.R. Choudhuri and S. Maitra, \u201cSignificantly improved multi-bit differentials for reduced round Salsa and ChaCha,\u201d IACR Trans. Symmetric Cryptol., vol.2016, no.2, pp.261-287, 2016. 10.46586\/tosc.v2016.i2.261-287","DOI":"10.46586\/tosc.v2016.i2.261-287"},{"key":"19","doi-asserted-by":"crossref","unstructured":"[20] C. Beierle, G. Leander, and Y. Todo, \u201cImproved differential-linear attacks with applications to ARX ciphers,\u201d CRYPTO 2020, Proceedings, Part III, D. Micciancio and T. Ristenpart, eds., LNCS, vol.12172, pp.329-358, Springer, 2020. 10.1007\/978-3-030-56877-1_12","DOI":"10.1007\/978-3-030-56877-1_12"},{"key":"20","doi-asserted-by":"publisher","unstructured":"[21] N. Ghafoori and A. Miyaji, \u201cHigher-order differential-linear cryptanalysis of ChaCha stream cipher,\u201d IEEE Access, vol.12, pp.13386-13399, 2024. 10.1109\/access.2024.3356868","DOI":"10.1109\/ACCESS.2024.3356868"},{"key":"21","doi-asserted-by":"publisher","unstructured":"[22] N. Ghafoori, A. Miyaji, R. Ito, and S. Miyashita, \u201cPNB based differential cryptanalysis of Salsa20 and ChaCha,\u201d IEICE Trans. Inf. &amp; Syst., vol.E106-D, no.9, pp.1407-1422, Setp. 2023. 10.1587\/transinf.2022icp0015","DOI":"10.1587\/transinf.2022ICP0015"},{"key":"22","doi-asserted-by":"crossref","unstructured":"[23] S.K. Langford and M.E. Hellman, \u201cDifferential-linear cryptanalysis,\u201d CRYPTO 1994, Proceedings, Y. Desmedt, ed., LNCS, vol.839, pp.17-25, Springer, 1994. 10.1007\/3-540-48658-5_3","DOI":"10.1007\/3-540-48658-5_3"},{"key":"23","doi-asserted-by":"crossref","unstructured":"[24] J. Wall\u00e9n, \u201cLinear approximations of addition modulo 2<sup><i>n<\/i><\/sup>,\u201d FSE 2003, Revised Papers, T. Johansson, ed., LNCS, vol.2887, pp.261-273, Springer, 2003. 10.1007\/978-3-540-39887-5_20","DOI":"10.1007\/978-3-540-39887-5_20"}],"container-title":["IEICE Transactions on Fundamentals of Electronics, Communications and Computer Sciences"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/www.jstage.jst.go.jp\/article\/transfun\/E108.A\/9\/E108.A_2024DMP0008\/_pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,9,6]],"date-time":"2025-09-06T03:33:32Z","timestamp":1757129612000},"score":1,"resource":{"primary":{"URL":"https:\/\/www.jstage.jst.go.jp\/article\/transfun\/E108.A\/9\/E108.A_2024DMP0008\/_article"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,9,1]]},"references-count":23,"journal-issue":{"issue":"9","published-print":{"date-parts":[[2025]]}},"URL":"https:\/\/doi.org\/10.1587\/transfun.2024dmp0008","relation":{},"ISSN":["0916-8508","1745-1337"],"issn-type":[{"type":"print","value":"0916-8508"},{"type":"electronic","value":"1745-1337"}],"subject":[],"published":{"date-parts":[[2025,9,1]]},"article-number":"2024DMP0008"}}