Upper Bounds on Differential Characteristics in Twofish

Niels Ferguson

Twofish Technical Report #1, August 1998.

Abstract

In the Twofish AES submission the Twofish block cipher was introduced, and initial estimates of an upper bounds on the probability of a 12-round differential were given. These results used an imperfect model of Twofish. We present an improved model, and show that any 12-round differential characteristic has a probability of at most 2-102.8.

Download

Zipped PostScript (60 kB)
PDF (148 kB)