From: Full-round impossible differential attack on shadow block cipher
\(p_i\) | \(p{'}_i\) | \(p_i\) | \(p{'}_i\) | \(p_i\) | \(p{'}_i\) | \(p_i\) | \(p{'}_i\) | \(p_i\) | \(p{'}_i\) | \(p_i\) | \(p{'}_i\) | \(p_i\) | \(p{'}_i\) | \(p_i\) | \(p{'}_i\) |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
0 | 104 | 16 | 108 | 32 | 112 | 48 | 116 | 64 | 120 | 80 | 124 | 96 | 0 | 112 | 16 |
1 | 105 | 17 | 109 | 33 | 113 | 49 | 117 | 65 | 121 | 81 | 125 | 97 | 1 | 113 | 17 |
2 | 106 | 18 | 110 | 34 | 114 | 50 | 118 | 66 | 122 | 82 | 126 | 98 | 2 | 114 | 18 |
3 | 107 | 19 | 111 | 35 | 115 | 51 | 119 | 67 | 123 | 83 | 127 | 99 | 3 | 115 | 19 |
4 | 32 | 20 | 48 | 36 | 48 | 52 | 60 | 68 | 80 | 84 | 92 | 100 | 4 | 116 | 20 |
5 | 33 | 21 | 49 | 37 | 49 | 53 | 61 | 69 | 81 | 85 | 93 | 101 | 5 | 117 | 21 |
6 | 34 | 22 | 50 | 38 | 50 | 54 | 62 | 70 | 82 | 86 | 94 | 102 | 6 | 118 | 22 |
7 | 35 | 23 | 51 | 39 | 51 | 55 | 63 | 71 | 83 | 87 | 95 | 103 | 7 | 119 | 23 |
8 | 36 | 24 | 52 | 40 | 52 | 56 | 64 | 72 | 84 | 88 | 96 | 104 | 8 | 120 | 24 |
9 | 37 | 25 | 53 | 41 | 53 | 57 | 65 | 73 | 85 | 89 | 97 | 105 | 9 | 121 | 25 |
10 | 38 | 26 | 54 | 42 | 54 | 58 | 66 | 74 | 86 | 90 | 98 | 106 | 10 | 122 | 26 |
11 | 39 | 27 | 55 | 43 | 55 | 59 | 67 | 75 | 87 | 91 | 99 | 107 | 11 | 123 | 27 |
12 | 40 | 28 | 56 | 44 | 56 | 60 | 68 | 76 | 88 | 92 | 100 | 108 | 12 | 124 | 28 |
13 | 41 | 29 | 57 | 45 | 57 | 61 | 69 | 77 | 89 | 93 | 101 | 109 | 13 | 125 | 29 |
14 | 42 | 30 | 58 | 46 | 58 | 62 | 70 | 78 | 90 | 94 | 102 | 110 | 14 | 126 | 30 |
15 | 43 | 31 | 59 | 47 | 59 | 63 | 71 | 79 | 91 | 95 | 103 | 111 | 15 | 127 | 29 |