Skip to main content

Lund University Publications

LUND UNIVERSITY LIBRARIES

Grain-128AEAD, Round 3 Tweak and Motivation

Hell, Martin LU ; Johansson, Thomas LU orcid ; Maximov, Alexander ; Meier, W and Yoshida, H (2021)
Abstract
Weaknesses in the Grain-128AEAD key re-introduction, as part of the
cipher initialization, are analyzed and discussed. We consider and analyze
several possible alternatives for key re-introduction and identify weaknesses, or potential weaknesses, in them. Our results show that it seems
favorable to separate the state initialization, the key re-introduction, and
the A/R register initialization into three separate phases. Based on this,
we propose a new cipher initialization and update the cipher version to
Grain-128AEADv2. It can be noted that previously reported and published analysis of the initialization remains valid also for this new versi
Please use this url to cite or link to this publication:
author
; ; ; and
organization
publishing date
type
Book/Report
publication status
published
subject
publisher
ARMGHM / NIST - CNRS
language
English
LU publication?
yes
id
a1684d4b-02cc-40bc-a0a3-838b5108c82c
alternative location
https://csrc.nist.gov/CSRC/media/Projects/lightweight-cryptography/documents/finalist-round/changelog-files/grain-128aead-tweak-final.pdf
date added to LUP
2021-12-15 15:10:45
date last changed
2021-12-17 14:17:11
@techreport{a1684d4b-02cc-40bc-a0a3-838b5108c82c,
  abstract     = {{Weaknesses in the Grain-128AEAD key re-introduction, as part of the<br/>cipher initialization, are analyzed and discussed. We consider and analyze<br/>several possible alternatives for key re-introduction and identify weaknesses, or potential weaknesses, in them. Our results show that it seems<br/>favorable to separate the state initialization, the key re-introduction, and<br/>the A/R register initialization into three separate phases. Based on this,<br/>we propose a new cipher initialization and update the cipher version to<br/>Grain-128AEADv2. It can be noted that previously reported and published analysis of the initialization remains valid also for this new versi}},
  author       = {{Hell, Martin and Johansson, Thomas and Maximov, Alexander and Meier, W and Yoshida, H}},
  institution  = {{ARMGHM / NIST - CNRS}},
  language     = {{eng}},
  title        = {{Grain-128AEAD, Round 3 Tweak and Motivation}},
  url          = {{https://csrc.nist.gov/CSRC/media/Projects/lightweight-cryptography/documents/finalist-round/changelog-files/grain-128aead-tweak-final.pdf}},
  year         = {{2021}},
}