|
Name | Author(s) | Report(s) |
---|---|---|
MARS | IBM (11 authors) | "Tweak" BF2000, KS2000, Sub.stat. |
RC6 | Rivest, Robshaw, Sidney, Yin | KM99 , Gil2000, Sub.stat. |
RIJNDAEL | Daemen, Rijmen | GM2000, BK2000, Lu2000, MR00, DR00, Sub.stat. |
SERPENT | Anderson, Biham, Knudsen | KKS2000, Sub.stat. |
TWOFISH | Schneier, Kelsey, Whiting, Wagner, Hall, Ferguson | MM99, SM00, LK00, WK99, SK98 Sub.stat. |
Name | Author(s) | Rounds | Attack(s) |
---|---|---|---|
CAST-256 | Adams | 48 | ? |
CRYPTON | Lim | 12 | C:32/56/32 (6) [DB99] |
DEAL | Knudsen, Outerbridge | 6,8 | [Luc98] , [KS99] |
DFC | Vaudenay et al | 8 | [KR99] |
E2 | Aoki, Kanda, Matsumoto, Moriai, Ohta, Ookubo, Takashima, Ueda | 12 | C:100/./. (8) [MT99] |
FROG | Georgoudis, Leroux, Chaves | 8 | [W98] |
Hasty Pudding | R. Schroeppel | 8 | ? |
LOKI97 | Brown, Pieprzyk | 16 | K:56/./., C:56/./., [RK98] |
MARS | IBM | 32 | [Saar98] |
Magenta | Deutsche Telekomm | 6,8 | [BBFKS] |
RC6 | Rivest, Robshaw, Sidney, Yin | 20 | ? |
RIJNDAEL | Daemen, Rijmen | 10,12,14 | ? |
SAFER+ | Massey, Khachatrian, Kuregian | 8,12,16 | [KSW99] |
SERPENT | Anderson, Biham, Knudsen | 32 | ? |
TWOFISH | Schneier, Kelsey, Whiting, Wagner, Hall, Ferguson | 16 | MM99 |
Name | Name of the block cipher |
Author | Name of the designer |
Rounds | the number of rounds of the cipher |
Attack | |
K:a/b/c denotes that the best known plaintext attack requires 2a plaintext/ciphertexts, has a workload of 2b encryptions and requires 2c words of memory. | |
C:a/b/c denotes that the best chosen plaintext attack requires 2a
plaintext/ciphertexts, has a workload of 2b encryptions and
requires 2c words of memory.
A `.' means that this resource requirement is either negligible or unknown to us. |
|
(r): the number of rounds of the attack. If blank, r=Rounds | |
[SA]: the paper describing the attack | |
?: No attacks known |
If you have some attacks on some of the ciphers here, or if you have
comments to this page, please contact
Lars or Vincent (see links below).
This page was created 15.06.97 by Lars R. Knudsen and Vincent Rijmen.
The page is maintained by Lars R. Knudsen and Vincent
Rijmen .
All comments welcome
NIST's
AES page
Block
Cipher Lounge
Lars's
homepage
Vincent's
homepage