On the weak keys of Blowfish,
S. Vaudenay,
Fast Software Encryption, Third International Workshop,
LNCS 1008, pp. 286-297. Springer-Verlag, 1995
(local copy).
An Analysis of the CAST-256 Cipher,
C. Adams, H. Heys, S. Tavares, and M. Wiener,
Proceedings of IEEE Canadian Conference on
Electrical and Computer Engineering, 1999
(local copy).
[Patent] Carlisle Adams
Symmetric cryptographic system for data encryption,
U.S. Patent 5,511,123, filed August 4 1994, issued April 23 1996.
An Improvement of Davies' Attack on DES,
E. Biham, and A. Biryukov,
CS 817, EUROCRYPT '94 Proceedings, LNCS 950, Springer Verlag, 1995, and
Journal of Cryptology, Vol. 10, No. 3, pp. 195-206, 1997
(local copy).
On the design and security of block ciphers, X. Lai,
ETH Series in Information Processing, Vol. 1, Hartung-Gorre Verlag,
Konstanz Technische Hochschule (Zurich), 1992.
Two attacks on reduced IDEA, J. Borst, L. Knudsen, and V. Rijmen,
Advances in Cryptology - EUROCRYPT '97 Proceedings, LNCS 1233,
pp. 1-13. Springer-Verlag, 1997
(local copy).
MARS - A candidate cipher for AES," (corrected version),
Carolynn Burwick, Don Coppersmith, Edward D'Avignon, Rosario Gennaro,
Shai Halevi, Charanjit Jutla, Stephen M. Matyas Jr., Luke O'Connor,
Mohammad Peyravian, David Safford, and Nevenko Zunicof.
[Note that the key schedule described here is for the initial
version of MARS submitted as a first round AES candidate.]
On the design and security of RC2,
L.R. Knudsen, V. Rijmen, R.L. Rivest, and M.J.B. Robshaw,
Fast Software Encryption, LNCS 1372, pp. 206-221. Springer-Verlag, 1998
(local copy).
Section 7.7.2 RC5,
A. Menezes, P.C. van Oorschot, and S.A. Vanstone,
Handbook of Applied Cryptography, CRC Press, 1997
(local copy).
On Differential and Linear Cryptanalysis of the RC5 Encryption Algorithm,
B.S. Kaliski, and Y.L. Yin,
Advances in Cryptology - CRYPTO '95, pp. 171-184. Springer-Verlag, 1995.
(local copy).
A Timing Attack on RC5, H. Heys,
Workshop on Selected Areas in Cryptography - SAC '98,
Queen's University, Kingston, Ontario, Aug. 1998
(local copy).
To be published by Springer-Verlag.
[Patent] RSA Data Security (assignee)
"Block Encryption Algorithm with Data-Dependent Rotations,"
U.S. Patent 5,724,428, filed November 1 1995, issued March 3 1998.
"Block Encryption Algorithm with Data-Dependent Rotations,"
U.S. Patent 5,835,600, filed April 21 1997, issued November 10 1998.
[Patent] RSA Data Security (assignee)
"Block Encryption Algorithm with Data-Dependent Rotations,"
U.S. Patent 5,724,428, filed November 1 1995, issued March 3 1998.
"Block Encryption Algorithm with Data-Dependent Rotations,"
U.S. Patent 5,835,600, filed April 21 1997, issued November 10 1998.
"Enhanced Block Encryption Algorithm with Data-Dependent Rotations,"
U.S. Patent Application 09/094,649. Filed June 15, 1998.
SAFER-K / SAFER-SK
SAFER K-64: A Byte-Oriented Block Ciphering Algorithm,
Massey, J. L.,
Fast Software Encryption, Proceedings of the Cambridge Security Workshop,
Cambridge, U.K., December 9-11, 1993, pp. 1-17. LNCS 809, Springer, 1994.
SAFER K-64: One Year Later, Massey, J. L.,
Fast Software Encryption: Second International Workshop, LNCS 1008,
pp. 212-241, Leuven, Belgium, 14-16 December 1994. Springer-Verlag, 1995.
Section 7.7.1 SAFER,
A. Menezes, P.C. van Oorschot, and S.A. Vanstone,
Handbook of Applied Cryptography, CRC Press, 1997
(local copy).
Announcement of a Strengthened Key Schedule for the Cipher SAFER,
Massey, J. L.,
September 9, 1995, (see file 'SAFER_SK.TXT' included in the SAFER toolkit, below).
The Block Cipher Square,
Joan Daemen, Lars Knudsen, and Vincent Rijmen,
Fast Software Encryption, LNCS 1267, pp. 149-165. Springer-Verlag, 1997
(local copy).
Twofish: A 128-bit Block Cipher, Bruce Schneier, John Kelsey,
Doug Whiting, David Wagner, Chris Hall, and Niels Ferguson,
15 June 1998. Presented at the 1st AES Conference.
On the Twofish Key Schedule, Bruce Schneier, John Kelsey,
Doug Whiting, David Wagner, Chris Hall, and Niels Ferguson,
Twofish Technical Report #3, Fifth Annual Workshop on
Selected Areas in Cryptography, Springer Verlag, August 1998.
The average cycle size of the key stream in output feedback encipherment,
D.W. Davies, and G.I.P. Parkin,
Cryptography, Proceedings of the Workshop on Cryptography, Burg-Feuerstein,
Germany, March 29-April 2, 1982, Springer-Verlag, 1983, pp. 263-279.
Also in Advances in Cryptology - Crypto '82 Proceedings, Plenum Press, 1983, pp. 97-98
(local copy(Abstract)).
[Patent] P. Rogaway, D. Coppersmith
"Software-efficient pseudorandom function and the use thereof for encryption,"
U.S. Patent 5,454,039, filed December 6 1993, issued September 26 1995.
"Software-efficient pseudorandom function and the use thereof for encryption,"
U.S. Patent 5,675,652, filed June 7 1995, issued October 7 1997.
Complete Characterization of Security Notions for Probabilistic Private-Key Encryption,
J. Katz and M. Yung,
Proc. of STOC'2000, pp.245-254, ACM, 2000.
A chosen plaintext attack of the 16-round Khufu cryptosystem,
H. Gilbert and P. Chauvaud,
Proc. of Crypto'94, Springer-Verlag, LNCS 839, pp.359-368, 1994
A new method for known plaintext attack of FEAL cipher,
M. Matsui and A. Yamagishi,
Proc. of Eurocrypt'92, Springer-Verlag, LNCS 658, pp.81-91, 1992
Known Plaintext Cryptanalysis of Tree-Structured Block Ciphers,
H. Heys and S. Tavares, IEE Electronics Letters, v. 31, n. 10, 1995, pp. 784-785.
(Also presented at TRIO Researcher's Retreat, Kingston, Ontario, May 1994).