S-1 block cipher

From Wikipedia, the free encyclopedia
Revision as of 07:39, 27 April 2022 by imported>VulcanSphere (Adding local short description: "Cipher", overriding Wikidata description "block cipher" (Shortdesc helper))
(diff) ← Previous revision | Latest revision (diff) | Newer revision → (diff)
Jump to navigation Jump to search

Template:Short description Script error: No such module "other uses".

In cryptography, the S-1 block cipher was a block cipher posted in source code form on Usenet on 11 August 1995.[1] Although incorrect security markings immediately indicated a hoax, there were several features of the code which suggested it might be leaked source code for the Skipjack cipher, which was still classified at the time.

However once David Wagner had discovered a severe[2] design flaw, involving the key schedule but not the underlying round function, it was generally accepted as being a hoax—but one with an astonishing amount of work behind it. Bruce Schneier noted that S-1 contained a feature never seen before in the open literature; a G-table that results in key and data dependent rotation of S-boxes to use in a given round.[3] When Skipjack was eventually declassified in 1998, it was indeed found to be totally unlike S-1.

References

Template:Reflist

See also

Template:Cryptography navbox


Template:Asbox

  1. Script error: No such module "citation/CS1".
  2. Cryptanalysis of S-1, Aug 27, 1995,
  3. The S-1 Algorithm, Sep 6, 1995,