@article{oai:ipsj.ixsq.nii.ac.jp:00011889, author = {Toshio, Tokita and Tsutomu, Matsumoto and Toshio, Tokita and Tsutomu, Matsumoto}, issue = {8}, journal = {情報処理学会論文誌}, month = {Aug}, note = {This paper discusses the security of M8 which is an encryption algorithm registered in ISO9979 (No.20). M8 is a common key block cipher of which block size is 64? bits and the number of rounds is variable and has an encryption key and system keys where the latter determines the structure of M8. We discuss applicability of `differential cryptanalysis' `linear cryptanalysis' and `mod n cryptanalysis' to M8 respectively. As a result we show that there exist `differential' and `linear' characteristics that hold with probability p=1 and `mod n' characters of which bias is remarkably high. These facts show that the strength of M8 is strongly dependent on the values of system keys., This paper discusses the security of M8, which is an encryption algorithm registered in ISO9979 (No.20). M8 is a common key block cipher, of which block size is 64\,bits and the number of rounds is variable, and has an encryption key and system keys, where the latter determines the structure of M8. We discuss applicability of `differential cryptanalysis', `linear cryptanalysis' and `mod n cryptanalysis' to M8, respectively. As a result, we show that there exist `differential' and `linear' characteristics that hold with probability p=1 and `mod n' characters of which bias is remarkably high. These facts show that the strength of M8 is strongly dependent on the values of system keys.}, pages = {2098--2105}, title = {On Applicability of Differential Cryptanalysis Linear Cryptanalysis and Mod n Cryptanalysis to an Encryption Algorithm M8(ISO9979-20)}, volume = {42}, year = {2001} }