The r-round (iterated) Even-Mansour cipher (also known as key-alternating cipher) defines a block cipher from r fixed public n-bit permutations P1,...,Pr as follows Given a sequence of n-bit round keys k0,...,kr, an n-bit plaintext x is encrypted by xoring round key k0, applying permutation P1, xoring round key k1, etc. The (strong) pseudorandomness of this construction in the random permutation model (i.e., when the permutations P1,...,Pr are public random permutation oracles that the adversary can query in a black-box way) was studied in a number of recent papers, culminating with the work of Chen and Steinberger (EUROCRYPT2014), who proved that the r-round Even-Mansour cipher is indistinguishable from a truly random permutation up to O(2...
Abstract. Iterated Even-Mansour (EM) encryption schemes (also named “key-alternating ciphers”) were ...
We study how to construct efficient tweakable block ciphers in the Random Permutation model, where a...
The r-rounds Even–Mansour block cipher is a generalization of the well known Even–Mansour block ciph...
The r-round (iterated) Even-Mansour cipher (also known as key-alternating cipher) defines a block ci...
The r-round (iterated) Even-Mansour cipher (also known as key-alternating cipher) defines a block ci...
Abstract. The r-round (iterated) Even-Mansour cipher (also known as key-alternating cipher) defines ...
The r-rounds Even-Mansour block cipher uses r public permutations of {0, 1}n and r+1 secret keys. An...
Abstract. We analyze the security of the iterated Even-Mansour cipher (a.k.a. key-alternating cipher...
Abstract. The iterated Even-Mansour cipher is a construction of a block cipher from r public permuta...
International audienceThe iterated Even-Mansour cipher is a construction of a block cipher from r pu...
International audienceThe iterated Even-Mansour cipher is a construction of a block cipher from r pu...
International audienceThe iterated Even-Mansour cipher is a construction of a block cipher from r pu...
Abstract. The iterated Even-Mansour construction defines a block cipher from a tuple of public n-bit...
This paper considers - for the first time - the concept of key alternating ciphers in a provable sec...
This paper considers - for the first time - the concept of key alternating ciphers in a provable sec...
Abstract. Iterated Even-Mansour (EM) encryption schemes (also named “key-alternating ciphers”) were ...
We study how to construct efficient tweakable block ciphers in the Random Permutation model, where a...
The r-rounds Even–Mansour block cipher is a generalization of the well known Even–Mansour block ciph...
The r-round (iterated) Even-Mansour cipher (also known as key-alternating cipher) defines a block ci...
The r-round (iterated) Even-Mansour cipher (also known as key-alternating cipher) defines a block ci...
Abstract. The r-round (iterated) Even-Mansour cipher (also known as key-alternating cipher) defines ...
The r-rounds Even-Mansour block cipher uses r public permutations of {0, 1}n and r+1 secret keys. An...
Abstract. We analyze the security of the iterated Even-Mansour cipher (a.k.a. key-alternating cipher...
Abstract. The iterated Even-Mansour cipher is a construction of a block cipher from r public permuta...
International audienceThe iterated Even-Mansour cipher is a construction of a block cipher from r pu...
International audienceThe iterated Even-Mansour cipher is a construction of a block cipher from r pu...
International audienceThe iterated Even-Mansour cipher is a construction of a block cipher from r pu...
Abstract. The iterated Even-Mansour construction defines a block cipher from a tuple of public n-bit...
This paper considers - for the first time - the concept of key alternating ciphers in a provable sec...
This paper considers - for the first time - the concept of key alternating ciphers in a provable sec...
Abstract. Iterated Even-Mansour (EM) encryption schemes (also named “key-alternating ciphers”) were ...
We study how to construct efficient tweakable block ciphers in the Random Permutation model, where a...
The r-rounds Even–Mansour block cipher is a generalization of the well known Even–Mansour block ciph...