Research Article

Known-Key Distinguishing and Partial-Collision Attacks on GFN-2 with SP F-Function

Table 2

Difference propagation from the 5-round inbound structure of 4-branch GFN-2.

iΔXi,0ΔXi,1ΔXi,2ΔXi,3

–5??ΔP(1)?
–4Δ1ΔP(1)??
–3ΔP(1)?0Δ1
–200Δ1ΔP(1)
–10Δ100
0Δ1000
1ΔP(1)00Δ1
2Δ10Δ1ΔP(1)
3ΔP(1)00Δ1
400Δ1ΔP(1)
50Δ100
+1Δ1000
+2ΔP(1)00Δ1
+3?0Δ1ΔP(1)
+4?Δ1ΔP(1)?
+5?ΔP(1)??