Research Article
Integral Distinguishers of the Full-Round Lightweight Block Cipher SAT_Jo
Table 6
A bit-permutation for SAT_Jo allowing integral distinguishers for at most 9 rounds.
| X | 0 | 1 | 2 | 3 | 4 | 5 | 6 | 7 |
| P (X) | 0 | 4 | 8 | 12 | 16 | 20 | 24 | 28 | X | 8 | 9 | 10 | 11 | 12 | 13 | 14 | 15 | P (X) | 32 | 36 | 40 | 44 | 48 | 52 | 56 | 60 | X | 16 | 17 | 18 | 19 | 20 | 21 | 22 | 23 | P (X) | 1 | 5 | 9 | 13 | 17 | 21 | 25 | 29 | X | 24 | 25 | 26 | 27 | 28 | 29 | 30 | 31 | P (X) | 33 | 37 | 41 | 45 | 49 | 53 | 57 | 61 | X | 32 | 33 | 34 | 35 | 36 | 37 | 38 | 39 | P (X) | 2 | 6 | 10 | 14 | 18 | 22 | 26 | 30 | X | 40 | 41 | 42 | 43 | 44 | 45 | 46 | 47 | P (X) | 34 | 38 | 42 | 46 | 50 | 54 | 58 | 62 | X | 48 | 49 | 50 | 51 | 52 | 53 | 54 | 55 | P (X) | 3 | 7 | 11 | 15 | 19 | 23 | 27 | 31 | X | 56 | 57 | 58 | 59 | 60 | 61 | 62 | 63 | P (X) | 35 | 39 | 43 | 47 | 51 | 55 | 59 | 63 |
|
|