1

Im new to cryptoanalysis and started reading A Tutorial on Linear and Differential Cryptanalysis. The author is trying to explain it as simple as he can. But I still got some questions, can anybody help me please? He uses this example of simple spn. enter image description here

As far as I have understood if we dont use k1 we just skip all S1 sboxes and first permutation and start attack at second key mixing. There is still difference with some probability for if we use generated pairs of texts. How does removing k1 mixing or k5 mixing affect our attack? Do we generate pair at start of k2 key mixing?

Maarten Bodewes
  • 92,551
  • 13
  • 161
  • 313
Kirill
  • 55
  • 4
  • there are related questions and answers https://crypto.stackexchange.com/questions/68755/searching-for-a-differential-characteristic-differential-cryptanalysis?rq=1 and https://crypto.stackexchange.com/questions/68459/differential-cryptanalysis-tutorial-of-howard-m-heys?rq=1 – kodlu Sep 17 '20 at 21:06
  • I feel you may want to look at those and maybe split your question and/or remove some parts. it has too many parts. – kodlu Sep 17 '20 at 21:08
  • 2
    you need to do some of your own research instead of a massive dump like this. – kodlu Sep 17 '20 at 21:10

0 Answers0