Research Article

Related-Key Differential Attacks on Reduced-Round LBlock

Table 4

Summary of attacks on LBlock.

Attack type#RoundsTimeData#Keys per attack#Weak keysReference

Boomerang181[22]
ID201[5]
Integral201[5]
ID211[14]
ID211[15]
ID221[15]
ID231[23]
RKD222[24]
RKID224[18]
RKD2Section 4
RKID234[19]
RKD2Section 4

Remark: ID denotes impossible differential; RKD denotes related-key differential; RKID denotes Related-key impossible differential.