# Beyond Conventional Security in Sponge-Based Authenticated Encryption Modes

Journal of Cryptology, pp. 1-46, 2018.

Cited by: 4|Views51
EI

Abstract:

The Sponge function is known to achieve $$2^{c/2}$$ security, where c is its capacity. This bound was carried over to its keyed variants, such as SpongeWrap, to achieve a $$\min \{2^{c/2},2^\kappa \}$$ security bound, with $$\kappa$$ the key length. Similarly, many CAESAR competition submissions were designed to comply with the classical...More

Code:

Data:

Bibtex

