{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,12,6]],"date-time":"2025-12-06T04:24:15Z","timestamp":1764995055742,"version":"3.46.0"},"reference-count":26,"publisher":"Institute of Electronics, Information and Communications Engineers (IEICE)","issue":"12","content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEICE Trans. Inf. &amp; Syst."],"published-print":{"date-parts":[[2025,12,1]]},"DOI":"10.1587\/transinf.2024icp0002","type":"journal-article","created":{"date-parts":[[2025,8,12]],"date-time":"2025-08-12T22:07:14Z","timestamp":1755036434000},"page":"1507-1525","source":"Crossref","is-referenced-by-count":0,"title":["SAT-Based Differential Analysis of Initialization Phase of AEGIS\/Tiaoxin-346\/Rocca\/Rocca-S"],"prefix":"10.1587","volume":"E108.D","author":[{"given":"Takuro","family":"SHIRAYA","sequence":"first","affiliation":[{"name":"Graduate School of Information Science, University of Hyogo"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Kosei","family":"SAKAMOTO","sequence":"additional","affiliation":[{"name":"Mitsubishi Electric Corporation"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Takanori","family":"ISOBE","sequence":"additional","affiliation":[{"name":"Graduate School of Information Science, University of Hyogo"},{"name":"National Institute of Information and Communications Technology"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"532","reference":[{"key":"1","doi-asserted-by":"publisher","unstructured":"[1] N. Takeuchi, K. Sakamoto, and T. Isobe, \u201cSecurity evaluation of initialization phases and round functions of rocca and AEGIS,\u201d IEICE Trans. Fundam. Electron. Commun. Comput. Sci., vol.106, no.3, pp.253-262, 2023. 10.1587\/transfun.2022cip0013","DOI":"10.1587\/transfun.2022CIP0013"},{"key":"2","doi-asserted-by":"publisher","unstructured":"[2] T. Shiraya, N. Takeuchi, K. Sakamoto, and T. Isobe, \u201cMilp-based security evaluation for aegis\/tiaoxin-346\/rocca,\u201d IET Inf. Secur., vol.17, no.3, pp.458-467, 2023. 10.1049\/ise2.12109","DOI":"10.1049\/ise2.12109"},{"key":"3","doi-asserted-by":"publisher","unstructured":"[3] E. Biham and A. Shamir, \u201cDifferential cryptanalysis of des-like cryptosystems,\u201d Advances in Cryptology - CRYPTO \u201990, 10th Annual International Cryptology Conference, Santa Barbara, California, USA, August 11-15, 1990, Proceedings, ed. A. Menezes and S.A. Vanstone, Lecture Notes in Computer Science, vol.537, pp.2-21, Springer, 1990. 10.1007\/BF00630563","DOI":"10.1007\/BF00630563"},{"key":"4","doi-asserted-by":"crossref","unstructured":"[4] N. Mouha, Q. Wang, D. Gu, and B. Preneel, \u201cDifferential and linear cryptanalysis using mixed-integer linear programming,\u201d Information Security and Cryptology - 7th International Conference, Inscrypt 2011, Beijing, China, November 30 - December 3, 2011. Revised Selected Papers, ed. C. Wu, M. Yung, and D. Lin, Lecture Notes in Computer Science, vol.7537, pp.57-76, Springer, 2011. 10.1007\/978-3-642-34704-7_5","DOI":"10.1007\/978-3-642-34704-7_5"},{"key":"5","doi-asserted-by":"publisher","unstructured":"[5] L. Sun, W. Wang, and M. Wang, \u201cMore accurate differential properties of LED64 and midori64,\u201d IACR Trans. Symmetric Cryptol., vol.2018, no.3, pp.93-123, 2018. 10.46586\/tosc.v2018.i3.93-123","DOI":"10.46586\/tosc.v2018.i3.93-123"},{"key":"6","doi-asserted-by":"publisher","unstructured":"[6] L. Sun, W. Wang, and M. Wang, \u201cAccelerating the search of differential and linear characteristics with the SAT method,\u201d IACR Trans. Symmetric Cryptol., vol.2021, no.1, pp.269-315, 2021. 10.46586\/tosc.v2021.i1.269-315","DOI":"10.46586\/tosc.v2021.i1.269-315"},{"key":"7","doi-asserted-by":"publisher","unstructured":"[7] H. Wu and B. Preneel, \u201cAEGIS: A fast authenticated encryption algorithm,\u201d Selected Areas in Cryptography - SAC 2013 - 20th International Conference, Burnaby, BC, Canada, August 14-16, 2013, Revised Selected Papers, ed. T. Lange, K.E. Lauter, and P. Lisonek, Lecture Notes in Computer Science, vol.8282, pp.185-201, Springer, 2013. 10.1007\/978-3-662-43414-7_10","DOI":"10.1007\/978-3-662-43414-7_10"},{"key":"8","unstructured":"[8] I. Corporation, \u201cIntel intrinsics guide.\u201d Official webpage,https:\/\/software.intel.com\/sites\/landingpage\/IntrinsicsGuide\/"},{"key":"9","unstructured":"[9] S. Gueron, \u201cIntel advanced encryption standard (aes) new instructions set,\u201d 2010."},{"key":"10","unstructured":"[10] \u201cCaesar: Competition for authenticated encryption: Security, applicability, and robustness..\u201d https:\/\/competitions.cr.yp.to\/caesar.html, 2019."},{"key":"11","unstructured":"[11] I. Nikolic, \u201cTiaoxin-346,\u201d Submission to the CAESAR competition, 2014."},{"key":"12","doi-asserted-by":"crossref","unstructured":"[12] J. Jean and I. Nikoli\u0107, \u201cEfficient design strategies based on the AES round function,\u201d Fast Software Encryption - 23rd International Conference, FSE 2016, Bochum, Germany, March 20-23, 2016, Revised Selected Papers, ed. T. Peyrin, Lecture Notes in Computer Science, vol.9783, pp.334-353, Springer, 2016. 10.1007\/978-3-662-52993-5_17","DOI":"10.1007\/978-3-662-52993-5_17"},{"key":"13","doi-asserted-by":"publisher","unstructured":"[14] K. Sakamoto, F. Liu, Y. Nakano, S. Kiyomoto, and T. Isobe, \u201cRocca: An efficient aes-based encryption scheme for beyond 5g (full version),\u201d IACR Cryptol. ePrint Arch., vol.2021, no.2, pp.1-30, June 2021 10.46586\/tosc.v2021.i2.1-30","DOI":"10.46586\/tosc.v2021.i2.1-30"},{"key":"14","doi-asserted-by":"crossref","unstructured":"[15] R. Anand, S. Banik, A. Caforio, K. Fukushima, T. Isobe, S.Kiyomoto, F. Liu, Y. Nakano, K. Sakamoto, and N. Takeuchi, \u201cAn ultra-high throughput aes-based authenticated encryption scheme for 6g: Design and implementation,\u201d ESORICS 2023, vol.14344, pp.229-248, 2024. 10.1007\/978-3-031-50594-2_12","DOI":"10.1007\/978-3-031-50594-2_12"},{"key":"15","doi-asserted-by":"crossref","unstructured":"[16] B. Minaud, \u201cLinear biases in AEGIS keystream,\u201d Selected Areas in Cryptography - SAC 2014 - 21st International Conference, Montreal, QC, Canada, August 14-15, 2014, Revised Selected Papers, ed. A. Joux and A.M. Youssef, Lecture Notes in Computer Science, vol.8781, pp.290-305, Springer, 2014. 10.1007\/978-3-319-13051-4_18","DOI":"10.1007\/978-3-319-13051-4_18"},{"key":"16","doi-asserted-by":"publisher","unstructured":"[17] M. Eichlseder, M. Nageler, and R. Primas, \u201cAnalyzing the linear keystream biases in AEGIS,\u201d IACR Trans. Symmetric Cryptol., vol.2019, no.4, pp.348-368, 2019. 10.46586\/tosc.v2019.i4.348-368","DOI":"10.46586\/tosc.v2019.i4.348-368"},{"key":"17","doi-asserted-by":"publisher","unstructured":"[18] F. Liu, T. Isobe, W. Meier, and K. Sakamoto, \u201cWeak keys in reduced AEGIS and tiaoxin,\u201d IACR Trans. Symmetric Cryptol., vol.2021, no.2, pp.104-139, 2021. 10.46586\/tosc.v2021.i2.104-139","DOI":"10.46586\/tosc.v2021.i2.104-139"},{"key":"18","doi-asserted-by":"publisher","unstructured":"[19] A. Hosoyamada, A. Inoue, R. Ito, T. Iwata, K. Minematsu, F.Sibleyras, and Y. Todo, \u201cCryptanalysis of rocca and feasibility of its security claim,\u201d IACR Trans. Symmetric Cryptol., vol.2022, no.3, pp.123-151, 2022. 10.46586\/tosc.v2022.i3.123-151","DOI":"10.46586\/tosc.v2022.i3.123-151"},{"key":"19","doi-asserted-by":"publisher","unstructured":"[20] P. Derbez, P.-A. Fouque, T. Isobe, M. Rahman, and A. Schrottenloher, \u201cKey committing attacks against aes-based AEAD schemes,\u201d IACR Trans. Symmetric Cryptol., vol.2024, no.1, pp.135-157, 2024. 10.46586\/tosc.v2024.i1.135-157","DOI":"10.46586\/tosc.v2024.i1.135-157"},{"key":"20","doi-asserted-by":"publisher","unstructured":"[21] L. Knudsen and D. Wagner, \u201cIntegral cryptanalysis,\u201d Fast Software Encryption, 9th International Workshop, FSE 2002, Leuven, Belgium, February 4-6, 2002, Revised Papers, ed. J. Daemen and V. Rijmen, Lecture Notes in Computer Science, vol.2365, pp.112-127, Springer, 2002. 10.1007\/3-540-45661-9_9","DOI":"10.1007\/3-540-45661-9_9"},{"key":"21","unstructured":"[23] S. Sobolev, \u201cConjunctive Normal Form, Encyclopedia of Mathematics,\u201d 2023. Accessed: February 7, 2025."},{"key":"22","unstructured":"[24] S.C. Xindi Zhang, Zhihan Chen, \u201cParkissat-rs.\u201d https:\/\/github.com\/songfu1983\/ParKissat-RS, 2022."},{"key":"23","doi-asserted-by":"crossref","unstructured":"[25] D. Schreiber and P. Sanders, \u201cScalable sat solving in the cloud,\u201d International Conference on Theory and Applications of Satisfiability Testing, pp.518-534, Springer, 2021. 10.1007\/978-3-030-80223-3_35","DOI":"10.1007\/978-3-030-80223-3_35"},{"key":"24","doi-asserted-by":"crossref","unstructured":"[26] P. Sanders and D. Schreiber, \u201cDecentralized online scheduling of malleable NP-hard jobs,\u201d International European Conference on Parallel and Distributed Computing, pp.119-135, Springer, 2022. 10.1007\/978-3-031-12597-3_8","DOI":"10.1007\/978-3-031-12597-3_8"},{"key":"25","unstructured":"[27] T. Balyo, M. Heule, M. Iser, M. J\u00e4rvisalo, and M. Suda, eds., Proceedings of SAT Competition 2022: Solver and Benchmark Descriptions, Department of Computer Science Series of Publications B, Department of Computer Science, University of Helsinki, Finland, 2022."},{"key":"26","unstructured":"[28] A. Maximov, \u201cAES mixcolumn with 92 XOR gates,\u201d IACR Cryptol. ePrint Arch., p.833, 2019."}],"container-title":["IEICE Transactions on Information and Systems"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/www.jstage.jst.go.jp\/article\/transinf\/E108.D\/12\/E108.D_2024ICP0002\/_pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,12,6]],"date-time":"2025-12-06T03:27:28Z","timestamp":1764991648000},"score":1,"resource":{"primary":{"URL":"https:\/\/www.jstage.jst.go.jp\/article\/transinf\/E108.D\/12\/E108.D_2024ICP0002\/_article"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,12,1]]},"references-count":26,"journal-issue":{"issue":"12","published-print":{"date-parts":[[2025]]}},"URL":"https:\/\/doi.org\/10.1587\/transinf.2024icp0002","relation":{},"ISSN":["0916-8532","1745-1361"],"issn-type":[{"type":"print","value":"0916-8532"},{"type":"electronic","value":"1745-1361"}],"subject":[],"published":{"date-parts":[[2025,12,1]]},"article-number":"2024ICP0002"}}