Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.


Practical cube-attack against nonce-misused Ascon

May 10, 2022


Jules Baudrin - Inria


In this paper we present a practical cube attack against the full 6-round encryption in Ascon in the nonce-misuse setting. We precise right away that this attack does not violate the security claims made by the authors of Ascon, due to this setting. Our cryptanalysis is a conditional cube attack that is capable of recovering the full capacity in practical time by carefully studying the monomials of highest degree in the ANF of the full Ascon permutation. Overall, it has a complexity of about 240 adaptatively chosen plaintexts, and about 240 calls to the permutation. We have implemented the full attack and our experiments confirm our claims.

Presented at

LWC Workshop 2022

Event Details



Related Topics

Security and Privacy: cryptography

Created May 05, 2022, Updated May 11, 2022