SCIENCE CHINA Information Sciences, Volume 60, Issue 12: 122101(2017) https://doi.org/10.1007/s11432-016-0477-8

## Revised cryptanalysis for SMS4

Lei CHENG1,2, Bing SUN1,2,3, Chao LI1,*
• ReceivedJul 12, 2016
• AcceptedSep 8, 2016
• PublishedMar 13, 2017
### Abstract

SMS4 is released by the Chinese government as part of the WAPI standard for the wireless networks.At ICICS 2007 and CRYPTO 2015, Lu and Sun et al. constructed some $12$-round impossible differentials and $12$-round zero correlation linear hulls, respectively. In this paper, it is proved that the distinguishers constructed by Lu and Sun et al. are independent with the details of the non-linear layers though they concentrated on the specific S-boxes.This indicates that for the structure deduced by SMS4, there always exist $12$-round impossible differentials and $12$-round zero correlation linear hulls.

### Acknowledgment

This work was supported by National Natural Science Foundation of China (Grant Nos. 61672530, 61402515), and Research Fund for the Doctoral Program of Higher Education of China (Grant No. 2012150112004)

### References

• Figure 1

Round Function of SMS4.

• Figure 2

$12$-Round impossible differential of SMS4.

• Figure 3

$12$-Round zero correlation linear hull of SMS4.

