This shows you the differences between two versions of the page.
Both sides previous revision Previous revision | Next revision Both sides next revision | ||
mcmambo [20/03/2014 14:03:20] mmeh |
mcmambo [21/03/2014 08:06:29] mmeh [Cryptanalysis] |
||
---|---|---|---|
Line 6: | Line 6: | ||
===== Cryptanalysis ===== | ===== Cryptanalysis ===== | ||
+ | Samuel Neves points out in [[https://groups.google.com/forum/#!topic/crypto-competitions/ysiDA5Qqfrs|this thread]] a high-probability differential for the block cipher underlying McMambo. The designer acknowledges this as a forgery attack with success probability 2^{-24}, thus calling McMambo "dead". |