On the Optimality of Linear, Differential, and Sequential Distinguishers

  • Pascal Junod
Conference paper
Part of the Lecture Notes in Computer Science book series (LNCS, volume 2656)


In this paper, we consider the statistical decision processes behind a linear and a differential cryptanalysis. By applying techniques and concepts of statistical hypothesis testing, we describe precisely the shape of optimal linear and differential distinguishers and we improve known results of Vaudenay concerning their asymptotic behaviour. Furthermore, we formalize the concept of “sequential distinguisher” and we illustrate potential applications of such tools in various statistical attacks.


Distinguishers Statistical Hypothesis Testing Linear Cryptanalysis Differential cryptanalysis 

Copyright information

© International Association for Cryptologic Research 2003

Authors and Affiliations

  • Pascal Junod
    • 1
  1. 1.Security and Cryptography LaboratorySwiss Federal Institute of TechnologyLausanneSwitzerland

Personalised recommendations