Parameter 发表于 2025-3-28 15:08:52
Distinguisher and Related-Key Attack on HALFLOOP-96round weak-key attack. With . chosen-plaintexts, 38.77-bit equivalent information about the keys can be recovered. Even though the attack does not pose a significant security threat to HALFLOOP-96, its security margin in the related-key configuration is exceedingly narrow. Therefore, improper use mu