A Note on the Walsh Spectrum of Power Residue S-Boxes

Abstract

Let Fq be a prime field with q ≥ 3, and let d, m ≥ 1 be integers such that ( d, q ) = 1 and m (q - 1). In this paper we bound the absolute values of the Walsh spectrum of S-Boxes S (x) = xd · T ( xq - 1m ), where T is a function with T (x) ≠ 0 if x ≠ 0. Such S-Boxes have been proposed for the Zero-Knowledge-friendly hash functions Grendel and Polocolo. In particular, we prove the conjectured correlation of the Polocolo S-Box.

0

Turn this paper into a full lesson

ArcXiv compiles a staged curriculum from this paper: 8-12 lessons across beginner → advanced, synthesised section guides, visuals, flashcards, a quiz, exercises, and on-demand deep dives per section. Grounded in the abstract, never invented.

Discussion (0)

Sign in to join the discussion.

Loading comments…