A New Method for Impossible Differential Cryptanalysis of 8-Round AES-128
Zhonglin He, Zhihua Hu · 2011
Impossible differential cryptanalysis is an analysis method by constructing impossible differential path, eliminating the keys satisfying this path, and finally recovering the secret keys. This paper has utilized a new property of Mix Columns Transformation, constructed a new 4-round impossible differential path, added 1-round and 3-round possible differential path before and behind this path respectively, and constructed a new 8-round impossible differential path. This path has been utilized to analyze 64-bit initial keys of 8-round AES-128, and this analysis method requires 2104 pairs of selected plaintexts, about 2105 memory cells and about 2107 encryption and decryption computation.