AES-128 (was Re: Suggested DER Prefixes)2003-05-29 11:28:13At 01:05 PM 5/29/2003 -0400, Jeroen van Gelderen wrote: The original statement was: "In fact, there are those who feel safer with AES at 128 than at 256." I believe that when rumors of the initial Courtois & Pieprzyk work first made the rounds (Crypto '01?), it was "whispered" that their attack only applied to (or was simply more efficient at?) the 2 larger key sizes, but not to/at 128. The situation now seems to be much more complicated. See, for example: http://www.minrank.org/aes/-mjm
|
|