Ciminion: Symmetric Encryption Based on Toffoli-Gates over Large Finite Fields
Christoph Dobraunig, Lorenzo Grassi, Anna Guinet, Daniël Kuijsters
Abstract
Motivated by new applications such as secure Multi-Party Computation (MPC), Fully Homomorphic Encryption (FHE), and Zero-Knowledge proofs (ZK), the need for symmetric encryption schemes that minimize the number of field multiplications in their natural algorithmic description is apparent. This development has brought forward many dedicated symmetric encryption schemes that minimize the number of multiplications in GF(2^n) or GF(p), with p being prime. These novel schemes have lead to new cryptanalytic insights that have broken many of said schemes. Interestingly, to the best of our knowledge, all of the newly proposed schemes that minimize the number of multiplications use those multiplications exclusively in S-boxes based on a power mapping that is typically x^3 or x^-1. Furthermore, most of those schemes rely on complex and resource-intensive linear layers to achieve a low multiplication count.
In this paper, we present Ciminion, an encryption scheme minimizing the number of field multiplications in large binary or prime fields, while using a very lightweight linear layer. In contrast to other schemes that aim to minimize field multiplications in GF(2^n) or GF(p), Ciminion relies on the Toffoli gate to improve the non-linear diffusion of the overall design. In addition, we have tailored the primitive for the use in a Farfalle-like construction in order to minimize the number of rounds of the used primitive, and hence, the number of field multiplications as far as possible.
Ask about this paper
Ask your agent about it.
Lune has read the top-tier papers around this one, so every answer names the papers it rests on.
Cited by top-tier papers4
- New Design Techniques for Efficient Arithmetization-Oriented Hash Functions: ttAnemoi Permutations and ttJive Compression ModeClémence Bouvier, Pierre Briaud, Pyrros Chaidos, Léo Perrin et al.CRYPTO 2023 · 37 citations
- Effective and Efficient Masking with Low Noise Using Small-Mersenne-Prime CiphersLoïc Masure, Pierrick Méaux, Thorben Moos, François-Xavier StandaertEUROCRYPT 2023 · 20 citations
- LaKey: Efficient Lattice-Based Distributed PRFs Enable Scalable Distributed Key ManagementMatthias Geihs, Hart MontgomeryUSENIX Security 2024 · 7 citations
- Generalized Feistel Ciphers for Efficient Prime Field MaskingLorenzo Grassi, Loïc Masure, Pierrick Méaux, Thorben Moos et al.EUROCRYPT 2024 · 4 citations
Related papers
- Efficient Batchable Secure Outsourced Computation: Depth-Aware Arithmetization of Common Primitives for BFV & BGVJelle Vos, Mauro Conti, Zekeriya ErkinUSENIX Security 2025
- From Farfalle to Megafono via Ciminion: The PRF Hydra for MPC ApplicationsLorenzo Grassi, Morten Øygarden, Markus Schofnegger, Roman WalchEUROCRYPT 2023 · 25 citations
- Field Instruction Multiple DataKhin Mi Mi Aung, Enhui Lim, Sim Jun Jie, Benjamin Hong Meng Tan et al.EUROCRYPT 2022 · 3 citations
- Efficient Confidentiality-Preserving Data Analytics over Symmetrically Encrypted DatasetsSavvas Savvides, Darshika Khandelwal, Patrick EugsterVLDB 2020 · 38 citations
- Coefficient Grouping for Complex Affine LayersFukang Liu, Lorenzo Grassi, Clémence Bouvier, Willi Meier et al.CRYPTO 2023 · 10 citations
