International Association for Cryptologic Research

International Association
for Cryptologic Research

IACR News item: 02 July 2024

Dag Arne Osvik, David Canright
ePrint Report ePrint Report
We reduce the number of bit operations required to implement AES to a new minimum, and also compute improvements to elements of some other ciphers. Exploring the algebra of AES allows choices of basis and streamlining of the nonlinear parts. We also compute a more efficient implementation of the linear part of each round. Similar computational optimizations apply to other cryptographic matrices and S-boxes. This work may be incorporated into a hardware AES implementation using minimal resources, or potentially in a bit-sliced software implementation to increase speed.
Expand

Additional news items may be found on the IACR news page.