Research Article

Improved Conditional Differential Analysis on NLFSR-Based Block Cipher KATAN32 with MILP

Table 7

Four key-recovery attack experiments on 79-round KATAN32.

No.80-bit keyEquivalent key bits with the maximum bias

10111001000
21110001100
30011000100
40010110001