Post‐Quantum Symmetric Cryptography
María Naya‐Plasencia · 2023
The scientific community is expending significant effort to anticipate the enormous consequences of the arrival of quantum computers in cryptography. The main quantum algorithms used in symmetric cryptanalysis so far have used mainly Grover's algorithm. There are two main models considered to classify quantum attacks on symmetric schemes: Q1 model and Q2 model. Besides the natural need for having bigger keys in the post-quantum world for an equivalent ideal security, the need also for bigger than usual internal states for avoiding internal quantum collisions seems like a good idea. As a future interesting field of work, new generic ways of extending the internal state size, as well as the key size, with a quantum security proof could be very useful for securely extending the use of current secure block ciphers to post-quantum applications.