Abstract
In this paper we find that the two-round (extended) Lai–Massey scheme is not pseudorandom and three-round (extended) Lai–Massey scheme is not strong pseudorandom.
Combined with previous work, we prove that three rounds are necessary and sufficient for the pseudorandomness and four rounds are necessary and sufficient for the strong pseudorandomness.
| Original language | English |
|---|---|
| Pages (from-to) | 90-96 |
| Number of pages | 7 |
| Journal | Information processing letters |
| Volume | 111 |
| Issue number | 2 |
| DOIs | |
| Publication status | Published - 31 Dec 2010 |
Keywords
- Pseudorandomness
- Lai–Massey scheme
- Cryptography
- EWI-18791
- Strong pseudorandomness
- SCS-Cybersecurity
- METIS-271127
- IR-74580
Cite this
- APA
- Author
- BIBTEX
- Harvard
- Standard
- RIS
- Vancouver