New Techniques for Analyzing Differentials with Application to AES
Itai Dinur
Abstract
We propose new techniques for estimating the probability that an input difference leads to an output difference in a block cipher (i.e., the probability of a differential) under the assumption of independent round-keys. We apply our techniques to AES, and show that the probability of every non-trivial differential in 8-round AES is within an additive factor of from the expected value of .
We further apply our techniques to prove that 40-round AES is at most -close to a pairwise independent permutation. This improves upon the work of Liu, Tessaro and Vaikuntanathan [CRYPTO 2021], who proved a similar bound for 9000-round AES.
To obtain our results, we develop and adapt a variety of techniques for analyzing differentials using functional analysis. We expect these techniques to be useful for analyzing differentials in additional block ciphers besides the AES.
Ask about this paper
Ask your agent about it.
Lune has read the top-tier papers around this one, so every answer names the papers it rests on.
Your agent calls
Lunesearch_papers
Free to start. No credit card required.
Terminal
Install the CLIlune papers get caea0139-9147-47e7-9885-dcfe18c10078Related papers
- Pairwise Independence of AES-Like Block CiphersTim Beyne, Gregor Leander, Immo SchüttEUROCRYPT 2026 · 1 citation
- The t-wise Independence of Substitution-Permutation NetworksTianren Liu, Stefano Tessaro, Vinod VaikuntanathanCRYPTO 2021 · 17 citations
- Layout Graphs, Random Walks and the t-Wise Independence of SPN Block CiphersTianren Liu, Angelos Pelecanos, Stefano Tessaro, Vinod VaikuntanathanCRYPTO 2023 · 9 citations
- How Fast Does the Inverse Walk Approximate a Random Permutation?Vishesh Jain, Tianren Liu, Clayton Mizgerd, Angelos Pelecanos et al.CRYPTO 2026 · 1 citation
- Better Steady than Speedy: Full Break of SPEEDY-7-192Christina Boura, Nicolas David, Rachelle Heim Boissier, María Naya-PlasenciaEUROCRYPT 2023 · 16 citations
