Fast Software Encryption

Volume 6733 of the series Lecture Notes in Computer Science pp 35-54

Multiple Differential Cryptanalysis: Theory and Practice

  • Céline BlondeauAffiliated withSECRET Project-Team - INRIA Paris-Rocquencourt
  • , Benoît GérardAffiliated withSECRET Project-Team - INRIA Paris-Rocquencourt


Differential cryptanalysis is a well-known statistical attack on block ciphers. We present here a generalisation of this attack called multiple differential cryptanalysis. We study the data complexity, the time complexity and the success probability of such an attack and we experimentally validate our formulas on a reduced version of PRESENT. Finally, we propose a multiple differential cryptanalysis on 18-round PRESENT for both 80-bit and 128-bit master keys.


iterative block cipher multiple differential cryptanalysis PRESENT data complexity success probability time complexity