Abstract. GOST 28147-89 is a well-known block cipher and the official encryption standard of the Russian Federation. A 256-bit block cipher considered as an alternative for AES-256 and triple DES, having an amazingly low implementation cost and it is becoming increasingly popular [51, 36]. Until 2010 researchers unanimously agreed that: “despite considerable cryptanalytic efforts spent in the past 20 years, GOST is still not broken”, see [51] and in 2010 it was submitted to ISO 18033 to become a worldwide industrial encryption standard. In 2011 it was suddenly discovered that GOST can be broken and it is insecure on more than one account. There is a substantial variety of recent innovative attacks on GOST [9, 26, 37, 10–12, 31, 21, 19, 20]. We have reflection attacks [37, 26], attacks with double, triple and even quadruple reflections [26, 20], a large variety of self-similarity and black-box reduction attacks [9, 26, 19, 20], some of which do not use any reflections whatsoev...
Nicolas T. Courtois