On a Generalization of Substitution-Permutation Networks: The HADES Design Strategy
Lorenzo Grassi, Reinhard Lüftenegger, Christian Rechberger, Dragos Rotaru, Markus Schofnegger
Abstract
Keyed and unkeyed cryptographic permutations often iterate simple round functions. Substitution-permutation networks (SPNs) are an approach that is popular since the mid 1990s. One of the new directions in the design of these round functions is to reduce the substitution (S-Box) layer from a full one to a partial one, uniformly distributed over all the rounds. LowMC and Zorro are examples of this approach. A relevant freedom in the design space is to allow for a highly non-uniform distribution of S-Boxes. However, choosing rounds that are so different from each other is very rarely done, as it makes security analysis and implementation much harder. We develop the design strategy Hades and an analysis framework for it, which despite this increased complexity allows for security arguments against many classes of attacks, similar to earlier simpler SPNs. The framework builds upon the wide trail design strategy, and it additionally allows for security arguments against algebraic attacks, which are much more of a concern when algebraically simple S-Boxes are used. Subsequently, this is put into practice by concrete instances and benchmarks for a use case that generally benefits from a smaller number of S-Boxes and showcases the diversity of design options we support: A candidate cipher natively working with objects in minimal amsmath wasysym amsfonts amssymb amsbsy mathrsfs upgreek -69pt documentdocumentGF(p), for securing data transfers with distributed databases using secure multiparty computation (MPC). Compared to the currently fastest design MiMC, we observe significant improvements in online bandwidth requirements and throughput with a simultaneous reduction of preprocessing effort, while having a comparable online latency.
Ask about this paper
Ask your agent about it.
Lune has read the top-tier papers around this one, so every answer names the papers it rests on.
Your agent calls
Lunesearch_papers
Free to start. No credit card required.
Terminal
Install the CLIlune papers get ce5b3c3f-2ca1-4d18-8dd3-906e9430f196Cited by top-tier papers9
- Out of Oddity - New Cryptanalytic Techniques Against Symmetric Primitives Optimized for Integrity Proof SystemsTim Beyne, Anne Canteaut, Itai Dinur, Maria Eichlseder et al.CRYPTO 2020 · 60 citations
- Shorter Signatures Based on Tailor-Made Minimalist Symmetric-Key CryptoChristoph Dobraunig, Daniel Kales, Christian Rechberger, Markus Schofnegger et al.CCS 2022 · 36 citations
- Reinforced Concrete: A Fast Hash Function for Verifiable ComputationLorenzo Grassi, Dmitry Khovratovich, Reinhard Lüftenegger, Christian Rechberger et al.CCS 2022 · 34 citations
- Chaghri - A FHE-friendly Block CipherTomer Ashur, Mohammad Mahzoun, Dilara ToprakhisarCCS 2022 · 31 citations
- Effective and Efficient Masking with Low Noise Using Small-Mersenne-Prime CiphersLoïc Masure, Pierrick Méaux, Thorben Moos, François-Xavier StandaertEUROCRYPT 2023 · 20 citations
Related papers
- Mind the Middle Layer: The HADES Design Strategy RevisitedNathan Keller, Asaf RosemarinEUROCRYPT 2021 · 24 citations
- MPC-Friendly Symmetric Cryptography from Alternating Moduli: Candidates, Protocols, and ApplicationsItai Dinur, Steven Goldfeder, Tzipora Halevi, Yuval Ishai et al.CRYPTO 2021 · 37 citations
- Cryptanalysis of Full LowMC and LowMC-M with Algebraic TechniquesFukang Liu, Takanori Isobe, Willi MeierCRYPTO 2021 · 37 citations
- Thinking Outside the SuperboxNicolas Bordes, Joan Daemen, Daniël Kuijsters, Gilles Van AsscheCRYPTO 2021 · 15 citations
- MAESTRO: Multi-Party AES Using Lookup TablesHiraku Morita, Erik Pohle, Kunihiko Sadakane, Peter Scholl et al.USENIX Security 2025
