top | item 35710416

(no title)

i2km | 2 years ago

Gröbner bases are powerful but do not scale.

In doctoral school I spent some time applying the state-of-the-art methods to trying to break lightweight symmetric ciphers. The idea was that the system of polynomials generated from a number of plaintext/ciphertext pairs might be solvable via Gröbner bases methods if the number of rounds of the cipher was low enough.

Quickly ran out of steam after a couple of rounds and ~200 polynomials or thereabouts (doubly exponential)

discuss

order

No comments yet.