Improved Cryptanalysis of Rijndael

Niels Ferguson, John Kelsey, Stefan Lucks, Bruce Schneier, Mike Stay, David Wagner, and Doug Whiting

In Fast Software Encryption, Proceedings FSE 2000, Lecture Notes in Computer Science #1978, pp. 213–230, Springer Verlag, 2000.

AES

Since this paper was published, Rijndael has been selected as the new AES block cipher standard. All attacks in the paper apply to AES as well, and to date this remain the best known attacks against AES.

Abstract

We improve the best attack on Rijndael reduced to 6 rounds from complexity 272 to 244. We also present the first known attacks on 7- and 8-round Rijndael. The attacks on 8-round Rijndael work for 192-bit and 256-bit keys. Finally, we discuss the key schedule of Rijndael and describe a related-key attack that can break 9-round Rijndael with 256-bit keys.

Download

Zipped PostScript (90 kB)
PDF (204 kB)