单调女 发表于 2025-3-30 08:29:37
Examination and Reconstruction, FF3-1 with . can be distinguished from an ideal tweakable block cipher with advantage . using . encryption queries. Recovering the left half of a message with similar advantage requires . data. The analysis of FF3-1 serves as an interesting real-world application of (generalized) linear cryptanalysis over the group ..