A multi-forkcipher (MFC) is a generalization of the forkcipher (FC) primitive introduced by Andreeva et al. at ASIACRYPT’19. An MFC is a tweakable cipher that computes s output blocks for a single input block, with s arbitrary but fixed. We define the MFC security in the ind-prtmfp notion as indistinguishability from s tweaked permutations. Generalizing tweakable block ciphers (TBCs, s = 1), as well as forkciphers (s = 2), MFC lends itself well to building simple-to-analyze modes of operation that support any number of cipher output blocks.Our main contribution is the generic CTR encryption mode GCTR that makes parallel calls to an MFC to encrypt a message M. We analyze the set of all 36 “simple and natural” GCTR variants under the nivE sec...
© Springer-Verlag Berlin Heidelberg 2007. FORK-256 is a hash function presented at FSE 2006. Whereas...
Abstract. We present the eXtended Ciphertext Block Chaining (XCBC) and the eXtended Electronic Codeb...
The need for lightweight cryptosystems is on a rise as they are compatible with energy- and memory- ...
Forkciphers are a new kind of primitive proposed recently by Andreeva et al. for efficient encryptio...
International audienceHighly efficient encryption and authentication of short messages is an essenti...
Boldyreva, Palacio and Warinschi introduced a multiple forking game as an extension of general forki...
Boldyreva, Palacio and Warinschi introduced a multiple forking game as an extension of general forki...
We describe a block-cipher mode of operation, CMC, that turns an n-bit block cipher into a tweakable...
A generalized Feistel structure (GFS) is a classical approach to construct a block cipher from pseud...
We define ZOCB and ZOTR for nonce-based authenticated encryption with associated data, and analyze t...
The tweakable Even-Mansour construction generalizes the conventional Even-Mansour scheme through rep...
We present the eXtended Ciphertext Block Chaining (XCBC) schemes or modes of encryption that can det...
Abstract. We propose the Synthetic Counter-in-Tweak (SCT) mode, which turns a tweakable block cipher...
International audienceTweakable block ciphers are increasingly becoming a common primitive to build ...
Boldyreva et al. introduced the notion of multiple forking (MF) as an extension of (general) forking...
© Springer-Verlag Berlin Heidelberg 2007. FORK-256 is a hash function presented at FSE 2006. Whereas...
Abstract. We present the eXtended Ciphertext Block Chaining (XCBC) and the eXtended Electronic Codeb...
The need for lightweight cryptosystems is on a rise as they are compatible with energy- and memory- ...
Forkciphers are a new kind of primitive proposed recently by Andreeva et al. for efficient encryptio...
International audienceHighly efficient encryption and authentication of short messages is an essenti...
Boldyreva, Palacio and Warinschi introduced a multiple forking game as an extension of general forki...
Boldyreva, Palacio and Warinschi introduced a multiple forking game as an extension of general forki...
We describe a block-cipher mode of operation, CMC, that turns an n-bit block cipher into a tweakable...
A generalized Feistel structure (GFS) is a classical approach to construct a block cipher from pseud...
We define ZOCB and ZOTR for nonce-based authenticated encryption with associated data, and analyze t...
The tweakable Even-Mansour construction generalizes the conventional Even-Mansour scheme through rep...
We present the eXtended Ciphertext Block Chaining (XCBC) schemes or modes of encryption that can det...
Abstract. We propose the Synthetic Counter-in-Tweak (SCT) mode, which turns a tweakable block cipher...
International audienceTweakable block ciphers are increasingly becoming a common primitive to build ...
Boldyreva et al. introduced the notion of multiple forking (MF) as an extension of (general) forking...
© Springer-Verlag Berlin Heidelberg 2007. FORK-256 is a hash function presented at FSE 2006. Whereas...
Abstract. We present the eXtended Ciphertext Block Chaining (XCBC) and the eXtended Electronic Codeb...
The need for lightweight cryptosystems is on a rise as they are compatible with energy- and memory- ...