In this paper we do differential cryptanalysis of SAFER. We consider ``truncated differentials'' and apply them in an attack on 5-round SAFER, which finds the secret key in time much faster than by exhaustive search.
[PS.z]
[Home] [Back to Bibliography]