====== Ascon ====== ===== The Algorithm ===== * Author(s): Christoph Dobraunig, Maria Eichlseder, Florian Mendel, Martin Schläffer * CAESAR submission: [[http://competitions.cr.yp.to/round1/asconv1.pdf|Ascon v1]] * Web: [[http://ascon.iaik.tugraz.at|Ascon]] * [[https://maps.google.com/maps?q=47.058388,15.457784&num=1&t=m&z=18|Location]] ===== Cryptanalysis ===== ^ Type ^ Rounds ^ Nonce ^ Complexity ^ Reference ^ | Key recovery | 5/12 Initialization | Respecting | $2^{35}$ | Dobraunig, Eichlseder, Mendel, and Schläffer [(:ref:caesar:asconIaik)] | | Key recovery | 6/12 Initialization | Respecting | $2^{66}$ | Ibid. [(:ref:caesar:asconIaik)] | | Forgery | 3/12 Finalization | Respecting | $2^{33}$ | Ibid. [(:ref:caesar:asconIaik)] | | Forgery | 4/12 Finalization | Respecting | $2^{101}$ | Ibid. [(:ref:caesar:asconIaik)] | | Permutation distinguisher | 12/12 Permutation | | $2^{130}$ | Ibid. [(:ref:caesar:asconIaik)] | ~~REFNOTES~~