AES competition/Catalogs/AES players: Difference between revisions

From Citizendium
Jump to navigation Jump to search
imported>Sandy Harris
No edit summary
imported>Sandy Harris
(→‎Summary table: wikilinks)
Line 29: Line 29:
<table border=1>
<table border=1>
<tr><th>AES cipher</th><th>Team included</th><th>Attack on ancestor</th><th>Analysis of candidate</th><th>Outcome</th></tr>  
<tr><th>AES cipher</th><th>Team included</th><th>Attack on ancestor</th><th>Analysis of candidate</th><th>Outcome</th></tr>  
<tr><td>Rijndael</td><td>Rijmen, Daemen</td><td>Knudsen</td><td>Ferguson, Schroeppel, Whiting</td><td>Winner</td></tr>
<tr><td>[[Rijndael]]</td><td>Rijmen, Daemen</td><td>Knudsen</td><td>Ferguson, Schroeppel, Whiting</td><td>Winner</td></tr>


<tr><td>Twofish</td><td>Schneier, Kelsey, Whiting, Wagner, Ferguson</td><td></td><td></td><td>Finalist</td></tr>
<tr><td>[[Twofish]]</td><td>Schneier, Kelsey, Whiting, Wagner, Ferguson</td><td></td><td></td><td>Finalist</td></tr>
 
 
<tr><td>Serpent</td><td>Anderson, Biham, Knudsen</td><td></td><td></td><td>Finalist</td></tr>  
<tr><td>[[Serpent (cipher)|Serpent]]</td><td>Anderson, Biham, Knudsen</td><td></td><td></td><td>Finalist</td></tr>  


<tr><td>RC6</td><td>Rivest</td><td></td><td></td><td>Finalist</td></tr>
<tr><td>[[Rivest ciphers|RC6]]</td><td>Rivest</td><td></td><td></td><td>Finalist</td></tr>
 
 
<tr><td>MARS</td><td>Coppersmith</td><td></td><td></td><td>Finalist</td></tr>
<tr><td>[[MARS (cipher)|MARS]]</td><td>Coppersmith</td><td></td><td></td><td>Finalist</td></tr>


<tr><td>Hasty Pudding</td><td>Schroeppel</td><td></td><td></td><td></td></tr>
<tr><td>Hasty Pudding</td><td>Schroeppel</td><td></td><td></td><td></td></tr>

Revision as of 23:50, 14 April 2011


The AES competition involved many of the world's top cryptographers.

Some of the major developments in cryptography before AES were:

Both differential and linear cryptanalysis break DES with less effort than brute force, but several writers have proposed methods of making ciphers provably resistant to linear and differential cryptanalysis — Carlisle Adams in CAST, Serge Vaudenay with his decorrelation theory, and Lars Knudsen and Kaisa Nyberg with their KN ciphers.

There are also several other new attacks that are variants of differential analysis. Biham invented related key attacks, and Lars Knudsen used that technique against some ancestors of AES candidates, breaking the first versions of both SAFER and LOKI. A direct ancestor of Rijndael, the winning AES candidate, was Square, designed by Joan Daemen and Vincent Rijmen. Knudsen invented integral cryptanalysis to break that. David Wagner invented another new technique called the boomerang attack to break Vaudenay's Coconut98. All these techniques have since been used to break several other ciphers. However, the AES candidate descendants of the various ciphers broken by them were all designed to resist those attacks.

Standard references in the field include Bruce Schneier's Applied Cryptography [1] and Ross Anderson's Security Engineering [2].

Most of the people mentioned above, and a number of others well-known in the field, participated in the AES process.

Summary table

Here is a table showing some of the major players. For several papers, some of the co-authors are omitted to make the table more readable; see references in the main article for complete co-author lists.

AES cipherTeam includedAttack on ancestorAnalysis of candidateOutcome
RijndaelRijmen, DaemenKnudsenFerguson, Schroeppel, WhitingWinner
TwofishSchneier, Kelsey, Whiting, Wagner, FergusonFinalist
SerpentAnderson, Biham, KnudsenFinalist
RC6RivestFinalist
MARSCoppersmithFinalist
Hasty PuddingSchroeppel
FROGSchneier, Wagner, Ferguson
MagentaSchneier, Biham, Shamir, Ferguson, Knudsen
E2Matsui
DEALKnudsenSchneier, Kelsey
DFCVaudenayWagnerKnudsen, Rijmen
CAST-256Adams
LOKI97SeberryKnudsen
SAFER+MasseyKnudsen
Crypton

References

  1. Schneier, Bruce (2nd edition, 1996,), Applied Cryptography, John Wiley & Sons, ISBN 0-471-11709-9
  2. Ross Anderson. Security Engineering.