SLIDE 51 Combining MILP with Division Property Modeling Basic Operations
Modeling Sbox — our new way
PRESENT Sbox
Table: Division Trails of PRESENT Sbox
Input D1,4
k
Output D1,4
K
(0,0,0,0) (0,0,0,0) (0,0,0,1) (0,0,0,1) (0,0,1,0) (0,1,0,0) (1,0,0,0) (0,0,1,0) (0,0,0,1) (0,0,1,0) (0,1,0,0) (1,0,0,0) (0,0,1,1) (0,0,1,0) (0,1,0,0) (1,0,0,0) (0,1,0,0) (0,0,0,1) (0,0,1,0) (0,1,0,0) (1,0,0,0) (0,1,0,1) (0,0,1,0) (0,1,0,0) (1,0,0,0) (0,1,1,0) (0,0,0,1) (0,0,1,0) (1,0,0,0) (0,1,1,1) (0,0,1,0) (1,0,0,0) (1,0,0,0) (0,0,0,1) (0,0,1,0) (0,1,0,0) (1,0,0,0) (1,0,0,1) (0,0,1,0) (0,1,0,0) (1,0,0,0) (1,0,1,0) (0,0,1,0) (0,1,0,0) (1,0,0,0) (1,0,1,1) (0,0,1,0) (0,1,0,0) (1,0,0,0) (1,1,0,0) (0,0,1,0) (0,1,0,0) (1,0,0,0) (1,1,0,1) (0,0,1,0) (0,1,0,0) (1,0,0,0) (1,1,1,0) (0,1,0,1) (1,0,1,1) (1,1,1,0) (1,1,1,1) (1,1,1,1)
The tables show 47 division trails of PRESENT Sbox.
51 / 74