Pseudorandomness analysis of the (extended) Lai–Massey scheme

Yiyuan Luo,Xuejia Lai,Zheng Gong
DOI: https://doi.org/10.1016/j.ipl.2010.10.012
IF: 0.851
2010-01-01
Information Processing Letters
Abstract:In this paper we find that the two-round (extended) Lai–Massey scheme is not pseudorandom and three-round (extended) Lai–Massey scheme is not strong pseudorandom. Combined with previous work, we prove that three rounds are necessary and sufficient for the pseudorandomness and four rounds are necessary and sufficient for the strong pseudorandomness.
What problem does this paper attempt to address?