forked from XKCP/XKCP
-
Notifications
You must be signed in to change notification settings - Fork 0
/
Copy pathKeccakSpongeIntermediateValues_r1344c256.txt
450 lines (291 loc) · 78.7 KB
/
KeccakSpongeIntermediateValues_r1344c256.txt
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
264
265
266
267
268
269
270
271
272
273
274
275
276
277
278
279
280
281
282
283
284
285
286
287
288
289
290
291
292
293
294
295
296
297
298
299
300
301
302
303
304
305
306
307
308
309
310
311
312
313
314
315
316
317
318
319
320
321
322
323
324
325
326
327
328
329
330
331
332
333
334
335
336
337
338
339
340
341
342
343
344
345
346
347
348
349
350
351
352
353
354
355
356
357
358
359
360
361
362
363
364
365
366
367
368
369
370
371
372
373
374
375
376
377
378
379
380
381
382
383
384
385
386
387
388
389
390
391
392
393
394
395
396
397
398
399
400
401
402
403
404
405
406
407
408
409
410
411
412
413
414
415
416
417
418
419
420
421
422
423
424
425
426
427
428
429
430
431
432
433
434
435
436
437
438
439
440
441
442
443
444
445
446
447
448
449
+++ Example with a small message +++
This is the empty string.
Input message (last byte aligned on LSB):
Input message (in bits):
Initial state:
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Block to be absorbed (last few bits + first bit of padding):
01
Second bit of padding:
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 80
Input of permutation:
01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 80 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
State after permutation:
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
--- Switching to squeezing phase ---
Squeezed block (part):
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
Input of permutation:
BC F5 6A C8 82 AD 98 1C D0 FA 74 F0 F3 97 57 2C 28 80 1C 1E B3 1C 1B AC 4C A7 03 D6 F1 9E 94 19 D6 93 BA 6C 2B 55 EF BF 13 97 77 FA 6B ED 94 21 50 6F 9F 27 D4 62 E7 AA CF F3 20 2A 88 CA 23 89 52 65 C9 AF 63 C4 B0 24 4C F3 31 1F 3F 28 39 D7 A8 6B 94 C8 B9 51 DF 8B 34 8C 9C 46 FB 6A F9 9B A5 60 CF 8C A7 5D C0 38 9E 1C FA 52 34 7D 02 1F F9 5A FA 28 2A 3F C1 25 37 CB 23 F3 19 33 F0 18 F4 86 45 19 1F 95 FD 04 4F AF 38 22 A3 99 C9 FF 23 63 9D B8 E1 D3 1D 0B 58 8F 4E 06 07 C9 0D 67 11 72 42 82 BC 9C 7E 68 1A 6A F4 67 3D 13 90 17 EC 33 EA 07 E9 AF AC 66 EF B6 D7 C2 9F F0 DB 3D 9C 30 5E 3B 0A 70 37 DF
State after permutation:
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
Squeezed block:
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
Input of permutation:
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
State after permutation:
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
Squeezed block:
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
Input of permutation:
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
State after permutation:
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
Squeezed block (part):
0A F0 E0 C6 04 1A 1B CA
+++ Example with a small message +++
This is the message of length 5 from http://csrc.nist.gov/groups/ST/toolkit/examples.html .
Input message (last byte aligned on LSB):
13
Input message (in bits):
1 1 0 0 1
Initial state:
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Block to be absorbed (last few bits + first bit of padding):
33
Second bit of padding:
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 80
Input of permutation:
33 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 80 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
State after permutation:
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
--- Switching to squeezing phase ---
Squeezed block (part):
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
Input of permutation:
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
State after permutation:
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
Squeezed block:
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
Input of permutation:
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
State after permutation:
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
Squeezed block:
0A 19 47 3E A7 D7 37 AC 93 48 15 D6 8C 07 10 23 54 83 DB 85 51 FD 87 56 45 69 2B 4E 5E 16 BB 9B 11 42 AE 30 0F 5F 69 F4 3F 00 91 D5 34 F3 72 E1 FF C2 E5 22 E7 10 03 E4 D2 7E F6 AC CD 36 B2 75 6F B5 FF 02 DB F0 C9 6B CA E6 8E 7D 64 27 81 05 82 F8 70 51 59 0F 6F B6 5D 7B 94 8A 9C 9D 6C 93 AF 45 62 36 7A 0A D7 91 09 D6 F3 08 7C 77 5F E6 D6 0D 66 B7 4F 8D 29 FB 4B A8 0D 01 68 69 3A 74 88 12 EA 0C D3 CA 23 85 4C C8 4D 4E 71 6F 4C 1A A3 B3 40 B1 DE D2 F3 04 DF DB AC C1 D7 92 C8 AC 9A 14 26 91 3E 3F 67 DB
Input of permutation:
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
State after permutation:
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
Squeezed block (part):
79 0F D5 CF B7 7D AA 29
+++ Example with a small message +++
This is the message of length 30 from http://csrc.nist.gov/groups/ST/toolkit/examples.html .
Input message (last byte aligned on LSB):
53 58 7B 19
Input message (in bits):
1 1 0 0 1 0 1 0 0 0 0 1 1 0 1 0 1 1 0 1 1 1 1 0 1 0 0 1 1 0
Initial state:
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Block to be absorbed (part):
53 58 7B
Block to be absorbed (last few bits + first bit of padding):
59
Second bit of padding:
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 80
Input of permutation:
53 58 7B 59 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 80 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
State after permutation:
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
--- Switching to squeezing phase ---
Squeezed block (part):
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
Input of permutation:
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
State after permutation:
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
Squeezed block:
67 16 AF 6E F3 C5 82 E1 56 19 F8 54 0B 85 CE 93 A7 7F 16 82 A2 EF 38 FD D8 09 94 B2 C4 7F 49 9E 03 68 11 CC A6 73 B6 D7 53 19 14 03 C1 09 18 BA 52 97 3D 1C 4E 33 49 E9 9B 0B 17 3E 3F 8B 80 A8 D0 DA F4 2D DB 56 E0 F3 53 B4 3A B6 70 17 D0 4E 48 07 48 7A B8 30 55 99 49 26 D5 80 E3 56 6C 27 0D 61 A1 86 7D 9B 09 7C 8B B8 56 AD 11 27 38 D8 EE 76 59 0B 00 5F 7E DF C9 75 DE F7 66 66 1B 29 29 F5 FB B2 E5 D9 19 6A 2E F0 65 27 13 8E 88 DC B8 1B 5D 4C 91 41 11 41 FD 1A 54 81 30 C4 4E D3 33 E6 0E 4E E0 84 69 20
Input of permutation:
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
State after permutation:
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
Squeezed block:
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
Input of permutation:
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
State after permutation:
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
Squeezed block (part):
D6 90 78 73 74 3F 9A 2A
+++ Example with a larger message +++
This is the message of length 1600 from http://csrc.nist.gov/groups/ST/toolkit/examples.html .
Input message (last byte aligned on LSB):
A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3
Input message (in bits):
1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1
Initial state:
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Block to be absorbed:
A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3
Input of permutation:
A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
State after permutation:
D4 31 E3 10 D6 F4 AA 7F 27 C5 9A E2 F1 F4 27 FC FA 19 1A AA 55 7D EE 5F F1 65 6C 72 BD F6 75 E5 D5 84 96 1C 3D 79 17 AF F3 5E 13 B8 B6 2C CA 5D 37 D2 AC 2F 33 41 4C 3E 59 08 38 21 20 85 50 AF B6 CF 4C E1 F4 8D 2D 4E 31 0D 9D 77 A2 82 1A C5 36 34 FB D1 D2 DD 85 96 5B B7 F2 28 82 54 16 71 62 71 1F 8E 5D 9C 2F E1 75 A3 D4 D1 A7 39 83 16 C4 B2 A8 F6 17 10 C7 B0 E4 8A E6 AD 3F 65 FE E3 2B 5E E0 D5 EF D2 AA EF 28 D5 28 80 DD B8 EA E9 CE DF F5 57 12 D4 53 6A 71 0D 1C 8D 79 16 B7 F0 D9 32 4A 02 A1 12 AE F1 42 E3 35 F1 19 F4 9A 16 A9 88 93 D6 0E 92 3D F6 9A 48 AB 34 6C 00 54 9E 58 DF 5A D9 B9 1B B9 85
Block to be absorbed (part):
A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3
Block to be absorbed (last few bits + first bit of padding):
01
Second bit of padding:
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 80
Input of permutation:
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
State after permutation:
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
--- Switching to squeezing phase ---
Squeezed block (part):
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
Input of permutation:
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
State after permutation:
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
Squeezed block:
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
Input of permutation:
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
State after permutation:
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
Squeezed block:
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
Input of permutation:
D5 52 08 FB 97 A4 1A 1E 39 22 F1 C2 38 1C F1 16 5D EF BF 96 4B 3E 88 58 E0 39 59 A9 3E 0E A2 09 FD 2E 2F 00 15 59 A4 22 5F 4B B1 6B E1 69 F3 B3 E0 42 42 E5 0C 91 53 DF 80 DA 1B 51 64 7F 23 10 AC C3 FD DB 22 EF 8E 6B 7E 82 21 A5 A7 E9 86 13 56 2D 7B 61 AD E4 3C C2 75 F7 D4 E8 C5 05 BF DC 83 A4 E9 F6 94 13 74 99 F3 00 F5 65 1F CF DA 81 E9 F1 E9 F2 91 2B 19 0C 81 E6 75 B3 4C 9F BB 5F 8C ED D6 DF C3 B2 6B 32 41 F9 08 AF A6 29 3B 92 C5 EF F4 00 E9 B4 3F 13 83 F3 9D 85 9C 72 B5 44 92 4C 0D D7 22 8B 5C 92 41 E2 36 AA D8 6A 65 20 7E 41 53 1E FA A8 EF F6 78 74 1D 2D 55 61 2D 3F 30 FD 3A 99 4D F3 ED 14
State after permutation:
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
Squeezed block (part):
38 58 E2 07 AA 40 8A 2C
+++ Example with a larger message +++
This is the message of length 1605 from http://csrc.nist.gov/groups/ST/toolkit/examples.html .
Input message (last byte aligned on LSB):
A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 03
Input message (in bits):
1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0
Initial state:
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Block to be absorbed:
A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3
Input of permutation:
A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
State after permutation:
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
Block to be absorbed (part):
A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3
Block to be absorbed (last few bits + first bit of padding):
23
Second bit of padding:
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 80
Input of permutation:
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
State after permutation:
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
--- Switching to squeezing phase ---
Squeezed block (part):
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
Input of permutation:
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
State after permutation:
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
Squeezed block:
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
Input of permutation:
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
State after permutation:
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
Squeezed block:
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
Input of permutation:
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
State after permutation:
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
Squeezed block (part):
51 19 5F B6 83 9B E7 94
+++ Example with a larger message +++
This is the message of length 1630 from http://csrc.nist.gov/groups/ST/toolkit/examples.html .
Input message (last byte aligned on LSB):
A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 23
Input message (in bits):
1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1 0 1 1 1 0 0 0 1
Initial state:
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Block to be absorbed:
A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3
Input of permutation:
A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
State after permutation:
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
Block to be absorbed (part):
A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3 A3
Block to be absorbed (last few bits + first bit of padding):
63
Second bit of padding:
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 80
Input of permutation:
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
State after permutation:
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
--- Switching to squeezing phase ---
Squeezed block (part):
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
Input of permutation:
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
State after permutation:
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
Squeezed block:
AF A6 ED 15 89 72 36 52 C1 5B 3F C6 68 7F 6A F4 A4 56 9A 7B AF 6C DC 2D D5 FF 22 C3 5D 76 EC 59 14 1C 97 27 CD B1 13 02 97 19 84 29 5B D2 67 1F E6 29 43 FC 6F 3A 19 77 F7 2B 8A BA 8B 1E 13 97 BD A6 5D 21 EE B4 E4 0B 2B F2 93 33 DE AC 1B A2 C5 A4 6D CE F2 8A 0F E5 EB C6 87 4C 94 E9 10 6F B6 5F 70 5E B3 FB CB DF D9 EE 72 64 4F 2B 98 EA D3 78 CB C4 CD E7 05 00 4B D4 90 F8 49 86 AD 74 ED 2E D7 43 4A A4 0E 13 16 63 BE 89 D9 84 AA 26 0B F9 F3 81 BB D5 8E 0E A1 19 64 A1 C5 43 B7 5F 05 52 17 64 13 BF 14 44
Input of permutation:
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
State after permutation:
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
Squeezed block:
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
Input of permutation:
58 56 4B 6D F9 AC 98 0E D8 C0 4E 53 39 86 84 23 FA B4 2C 58 24 1C 31 24 8A 16 20 9C 5D E9 24 0B EF DD D3 9A F2 C7 5A AC 77 D7 24 B0 8E 8E 83 33 A9 6B 4E 9E 9E 43 E8 BE E6 80 72 87 E4 28 9F 67 90 A0 80 BA 08 8D F2 40 15 D0 8F 7F 23 FE F6 70 DB DE C0 D2 7B F1 DA 60 A9 09 17 C8 72 84 CC EE 27 3D F6 05 31 B3 D2 4C FD D7 8C 25 50 BB D1 47 86 77 55 80 CC FC CC 40 53 0F 14 A9 CA 5F 0D A1 15 D7 28 6F 99 02 D6 73 08 48 AD 6B B4 DD 83 E8 7C 7D AC E5 4F A2 1F 6E 65 B2 72 1B 0B BD FC 6C F7 1F 89 6A 4E 8A 85 78 8E BB EF 39 C0 0D 7E F3 6C BE 41 3A 9B F0 0B C2 01 A4 FB F2 81 F5 1A 96 0F 71 3E 3D 05 00 FB E4
State after permutation:
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
Squeezed block (part):
31 0A 4A 0B 4B C1 31 A4
+++ Example with a larger message +++
This is the message of length 2008 from ShortMsgKAT.txt.
Input message (last byte aligned on LSB):
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
Input message (in bits):
1 1 0 0 0 0 0 1 1 1 1 1 0 1 0 1 0 0 1 0 1 1 0 0 1 1 1 0 0 1 0 0 0 0 1 1 1 0 0 1 1 1 0 1 0 0 1 1 0 0 1 0 1 0 1 0 0 0 0 0 1 1 0 0 0 1 1 1 1 1 1 1 0 1 1 1 1 1 0 1 0 0 0 0 0 0 1 1 0 1 0 1 1 1 1 0 1 0 0 0 0 0 0 1 1 0 1 0 1 0 0 1 1 0 1 1 0 0 0 0 0 0 0 0 1 1 0 0 0 0 1 0 1 1 1 1 0 1 1 0 1 1 0 1 1 1 1 1 0 1 1 0 0 0 0 1 0 0 1 0 0 0 0 1 0 0 1 0 0 1 1 0 0 1 0 0 1 1 1 1 0 1 0 1 0 1 1 1 0 1 1 1 0 0 1 0 1 1 1 0 0 1 1 0 1 0 1 0 0 0 0 0 1 1 1 1 1 1 1 0 0 0 0 0 0 1 0 1 1 0 0 0 1 0 0 0 1 0 1 0 1 0 0 0 0 1 1 1 1 1 0 1 1 1 0 1 1 0 1 0 0 0 1 1 1 0 1 0 1 0 1 0 0 0 0 0 1 1 1 0 1 0 1 0 1 1 0 1 0 0 1 1 0 0 1 1 0 1 1 1 1 1 1 0 0 1 1 0 0 0 1 1 1 0 0 1 1 1 1 1 0 0 0 0 1 1 0 0 0 0 1 1 1 0 0 1 1 1 1 0 1 0 0 0 1 1 1 1 1 1 0 1 1 1 0 1 1 0 1 0 1 1 1 1 0 1 1 1 1 0 1 1 1 0 1 1 0 0 1 1 1 1 1 0 1 1 0 1 0 1 1 0 0 1 1 0 0 1 0 1 1 0 0 1 0 1 1 1 0 0 0 1 0 1 1 0 1 1 1 1 0 0 1 1 1 0 0 0 0 1 0 0 0 1 0 1 0 0 0 1 1 1 0 1 0 1 0 0 0 0 1 0 1 1 0 0 1 0 1 1 1 1 0 1 0 0 1 1 1 0 1 0 1 0 0 1 1 1 1 1 1 1 1 0 0 1 0 0 1 1 0 1 0 1 0 1 0 0 1 0 0 0 0 1 0 1 1 1 0 1 1 0 0 0 0 1 1 1 0 0 0 0 1 0 0 1 0 1 1 1 0 1 0 0 0 0 1 0 1 1 1 1 0 1 1 0 0 0 0 0 0 1 1 0 1 0 1 1 1 0 0 1 1 1 1 0 0 1 0 1 1 1 1 0 0 1 1 1 0 0 1 1 0 0 0 0 0 1 1 1 0 0 0 0 0 0 1 0 0 0 0 1 1 0 1 0 0 0 1 1 1 0 0 1 0 1 1 0 1 0 1 0 1 0 0 1 1 0 1 1 1 1 1 0 0 1 1 0 0 1 1 1 1 1 1 0 1 1 1 0 1 0 1 1 0 0 0 1 1 0 1 0 1 1 0 0 0 0 0 1 1 0 0 0 0 0 0 0 0 0 1 1 0 1 1 1 1 0 0 1 1 1 1 0 1 0 1 0 1 1 0 1 0 1 0 1 0 0 1 1 1 1 0 1 0 0 1 0 0 1 0 1 1 1 1 1 1 1 1 1 1 1 0 1 1 1 1 1 1 0 1 1 0 1 1 0 1 0 1 1 0 0 0 0 0 0 0 1 0 0 0 1 1 1 1 1 1 0 1 1 1 1 1 1 0 1 0 0 0 0 1 1 1 0 1 0 1 0 1 1 0 1 1 0 1 1 1 1 0 1 1 1 1 0 1 0 0 0 1 1 0 0 0 0 0 1 1 1 1 1 0 0 1 0 1 1 0 1 1 1 1 0 0 1 0 1 1 1 1 1 0 1 1 1 0 0 0 0 0 1 1 0 1 0 0 0 1 1 0 1 0 0 1 1 1 0 0 0 0 1 0 0 0 1 0 1 1 0 0 1 0 0 1 0 1 0 1 1 1 1 1 1 0 1 0 1 0 1 0 0 1 0 1 0 0 1 0 1 0 0 1 0 1 0 0 0 1 1 0 1 0 1 0 1 0 1 1 1 1 1 1 0 1 1 0 0 1 1 0 0 1 1 0 0 0 1 0 1 0 0 1 0 0 1 1 0 0 1 0 1 0 0 1 0 0 1 1 0 1 0 1 0 1 1 0 0 1 0 1 0 0 1 1 1 1 1 0 0 1 0 1 1 1 1 1 0 1 0 0 1 0 0 1 1 1 1 1 1 0 1 0 1 0 0 0 0 0 1 1 0 0 0 0 0 0 0 1 1 1 0 1 0 1 0 0 0 0 0 1 0 0 1 1 1 1 0 0 0 1 1 0 1 1 1 0 1 0 1 1 1 0 0 1 1 0 1 0 0 1 1 0 0 0 1 0 0 0 0 1 1 0 0 0 0 0 0 1 0 1 0 0 1 1 1 0 1 0 0 1 0 0 0 0 0 0 1 1 0 1 1 1 0 1 1 0 0 1 0 1 1 1 1 1 0 0 0 0 0 0 1 1 1 0 0 1 1 0 0 0 0 0 0 0 1 0 1 1 1 0 1 0 0 0 0 0 1 0 0 1 1 0 0 1 1 0 1 0 0 0 0 1 1 1 0 0 0 1 0 0 1 0 0 1 0 0 0 1 1 1 1 0 1 1 1 0 1 1 0 0 0 0 0 1 1 0 1 1 1 0 0 0 1 0 0 1 0 0 0 0 0 0 0 1 1 1 1 1 0 0 1 1 0 0 1 1 1 1 0 1 0 0 1 0 0 0 0 1 1 0 1 1 0 0 1 0 1 0 1 1 0 0 0 1 1 1 1 0 0 1 1 1 1 1 0 1 1 0 1 1 1 0 1 1 1 1 1 0 0 1 1 0 1 1 0 1 0 0 0 1 0 1 1 1 0 1 0 1 1 1 0 0 0 1 1 0 0 1 0 0 0 1 1 0 0 0 0 1 0 0 0 0 0 1 1 1 0 1 0 1 0 1 0 0 1 0 0 0 0 1 1 1 0 0 0 1 1 1 1 1 0 0 1 1 0 1 0 1 0 0 1 1 1 1 0 1 0 0 0 0 0 1 0 0 0 0 0 0 1 1 0 1 1 0 1 0 0 0 1 0 1 1 1 0 1 0 0 0 0 0 0 1 1 0 0 0 1 0 0 0 0 0 1 0 0 0 1 1 0 0 0 1 0 1 1 1 1 0 0 0 1 1 0 0 1 1 1 1 1 1 0 0 0 1 0 1 0 1 1 1 1 0 0 1 0 1 1 1 1 0 0 1 1 1 0 0 0 1 1 0 0 0 0 1 0 1 1 0 1 0 0 1 0 0 1 0 0 0 0 1 1 1 0 0 1 0 0 0 1 1 0 1 1 1 0 1 1 0 1 0 0 0 1 1 1 0 0 1 1 1 0 1 0 0 1 1 1 0 0 1 1 0 0 0 1 0 1 0 1 0 0 0 0 0 1 0 1 0 1 0 0 1 0 1 0 1 1 1 1 0 0 0 1 1 1 0 0 0 1 0 0 1 1 0 1 1 0 0 0 1 0 0 1 0 0 0 1 0 1 0 1 0 1 1 1 1 1 1 0 1 1 0 0 1 1 0 0 0 0 0 0 1 0 0 1 1 1 1 0 1 0 1 1 1 1 1 0 1 1 0 0 1 0 0 1 1 0 0 0 0 1 0 1 1 0 0 0 1 1 1 0 0 0 0 0 0 0 0 1 0 0 1 0 0 1 0 1 0 0 1 0 1 0 1 1 1 0 1 0 1 1 1 1 1 1 0 0 1 1 1 1 1 1 0 0 0 0 0 1 1 1 0 1 0 0 0 1 0 0 1 1 1 0 0 0 1 1 1 1 0 0 1 1 1 0 1 0 0 0 0 0 0 1 1 1 0 1 1 0 1 0 1 0 1 0 1 0 0 1 1 1 1 0 1 0 0 1 1 1 0 0 0 1 1 1 1 1 0 1 1 1 1 1 1 1 0 1 1 1 1 1 0 1 0 1 1 1 1 0 1 0 1 1 1 1 1 0 0 0 1 0 1 0 1 1 0 1 1 0 1 1 1 0 0 1 1 1 1 0 0 1 1 0 0 0 0 0 0 0 1 0 0 0 0 1 1 0 0 1 0 1 0 1 0 0 0 0 0 0 0 0 0 1 0 1 0 0 1 1 0 1 1 0 0 0 0 1 0 1 0 1 0 0 0 0 0 1 0 1 0 1 0 0 0 0 1 1 1 1 1 1 0 0 0 0 1 1 1 0 1 0 1 0 0 1 0 0 1 0 0 0 0 0 1 0 1 1 0 1 1 0 1 1 0 0 1 1 1 0 1 0 0 1 1 1 0 0 0 0 1 0 1 1 0 1 0 0 1 1 0 0 1 0 0 1 0 1 1 1 0 1 0 1 0 1 0 0 0 0 0 1 1 1 0 1 1 1 1 1 1 0 0 1 0 1 0 1 0 0 0 0 1 0 0 0 0 1 1 1
Initial state:
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Block to be absorbed:
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
Input of permutation:
83 AF 34 27 9C CB 54 30 FE BE C0 7A 81 95 0D 30 F4 B6 6F 48 48 26 AF EE 74 56 F0 07 1A 51 E1 BB C5 55 70 B5 CC 7E C6 F9 30 9C 17 BF 5B EF DD 7C 6B A6 E9 68 CF 21 8A 2B 34 BD 5C F9 27 AB 84 6E 38 A4 0B BD 81 75 9E 9E 33 38 10 16 A7 55 F6 99 DF 35 D6 60 00 7B 5E AD F2 92 FE EF B7 35 20 7E BF 70 B5 BD 17 83 4F 7B FA 0E 16 CB 21 9A D4 AF 52 4A B1 EA 37 33 4A A6 64 35 E5 D3 97 FC 0A 06 5C 41 1E BB CE 32 C2 40 B9 04 76 D3 07 CE 80 2E C8 2C 1C 49 BC 1B EC 48 C0 67 5E C2 A6 C6 F3 ED 3E 5B 74 1D 13 43 70 95 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
State after permutation:
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
Block to be absorbed (part):
70 7C 56 5E 10 D8 A2 0B 8C 20 46 8F F9 51 4F CF 31 B4 24 9C D8 2D CE E5 8C 0A 2A F5 38 B2 91 A8 7E 33 90 D7 37 19 1A 07 48 4A 5D 3F 3F B8 C8 F1 5C E0 56 E5 E5 F8 FE BE 5E 1F B5 9D 67 40 98 0A A0 6C A8 A0 C2 0F 57 12 B4 CD E5 D0 32 E9 2A B8 9F 0A E1
Block to be absorbed (last few bits + first bit of padding):
01
Second bit of padding:
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 80
Input of permutation:
B8 87 BE 43 E9 27 17 F6 37 58 5B 66 96 52 33 84 03 17 D5 FA C9 79 73 79 FB D1 64 4B E4 4E 34 DB B8 FC 2E 68 D1 7D 9F A2 05 EA E4 A1 88 71 B3 52 5A 15 3D 43 4E C9 F9 B4 39 B4 5D B7 7B 63 74 1C C9 2E 42 F0 55 05 F8 C2 6B A1 41 64 62 1D F2 1B C4 5C DD D2 A5 8F 06 A1 61 C7 C1 4C 09 23 89 13 A5 D1 80 AF 72 6D E7 93 77 EA 54 92 BD 2C DC 10 F2 C8 69 4D 6E 7F 09 07 0A 14 F8 72 52 BD 8E F5 CF 0D A7 0A 1D AD 0D C1 06 A6 DC D3 27 FC 56 CF 6B 05 ED AE 22 24 A2 98 31 DC 78 48 C8 8D 40 2A 6C 63 2D E1 0D EA 95 A1 2C DC 6E E2 EF D7 1E 8B B4 EA FA 78 A1 7D 3F 92 59 99 16 22 6E D7 06 D3 DE 92 4A 3B 2A C4 5E 56
State after permutation:
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
--- Switching to squeezing phase ---
Squeezed block (part):
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
Input of permutation:
8B ED A2 26 94 FD 6D FD F5 1E 3D A4 9F 33 00 1E 7A 67 4C 98 B1 32 3D FB 47 A4 1D 6B 35 FB FF 6D A2 22 11 EF E5 33 D3 E3 DF D4 CE 8C 8F C6 9E 9E 0C FA C9 8F 9D 0A C5 95 5D 59 7F D9 20 95 0D 92 61 F1 C6 AF 16 B0 03 F9 9C 6B 36 E3 8D 37 51 52 BF F0 81 BD 3B 59 FE 21 D6 C2 82 91 81 EC F2 B3 F0 AD AE BB AB 4F 6E EE 1D 91 CC 3A D0 30 76 3B D8 AB 99 C3 5C 24 F6 CC 92 80 6D 72 1F 82 D9 64 9E 97 DA 20 1F 71 AB DD 12 42 B1 A7 A3 1F 86 E9 EC 8B EB C1 49 F7 E2 95 C2 D9 34 8B 2F 9B AD 8A C8 D1 6A 5C 6F 53 FF E8 9F B0 46 55 4C 56 8D A2 82 9E DC DC 78 F2 4B EC A8 92 39 89 01 6F 59 55 D4 87 2B 47 01 60 30 20
State after permutation:
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
Squeezed block:
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
Input of permutation:
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
State after permutation:
B7 3D CC 5B F0 A3 B8 3B C5 AD DF DA 94 82 AA E6 10 D6 36 B1 07 C0 B6 13 B1 E9 28 55 65 69 F8 65 6A 57 CD 1F 72 87 4E 54 43 3B 00 19 36 AF 99 94 4C 94 70 94 1F 8C 6B 26 13 5B 50 E0 17 11 81 66 B1 C8 78 C8 D5 D6 2E 27 6C 6C 8A 5C 19 99 99 6D F2 6B A6 FA 98 F7 72 19 9D 58 76 C9 B1 18 36 49 BA 71 D0 9B FE B2 8D 2D 0B EF 8B 1C 87 E1 21 2F 13 26 0F 99 13 78 91 10 AC AE 82 14 4F 9B 64 D9 69 C4 33 5D 3A 14 1D C1 9F BA 8D 02 88 0D BB 2D 60 CF 02 00 F3 CE CA 99 4C FE A3 E5 8F 41 FF F9 82 5E 9C AA 5C 67 5C F6 0D 26 67 2E 73 DF 11 30 AD 21 18 3E FB 13 7B E7 F7 AD 5D 87 EF A2 02 FD 0E 15 9E A2 9C CE 81 A7
Squeezed block:
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
Input of permutation:
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
State after permutation:
14 78 8F 5F B0 24 4F 4F FF 28 B2 4D BB EE 40 42 02 86 FC B2 C9 D0 3B B4 D0 FD 10 39 17 BF 18 BB F6 94 95 AC 2D 1A 70 AA D6 35 94 49 DC C8 88 75 28 3C C1 6B 07 E5 9A 1B B8 3B B3 19 65 91 6A 20 FD 52 5A 6C 5D 4B 7C B9 F8 F9 15 36 9F 8F 50 33 D7 97 0C 05 D8 05 97 D5 69 65 C5 CA FA 5F 30 76 9C E2 F5 29 05 17 8B 2C 28 B5 CC 43 C1 21 A9 AE AD BB E1 97 6B F0 1A 1F F5 87 0D 5E 2C 39 17 56 C9 6B 28 3E 5C B7 61 F6 A3 94 AE 2F E3 2D 00 F8 B8 A8 DD D8 26 8F 9F 8A 99 FD 9F CD 49 74 EC 6E 65 08 EB EE F6 CA 46 8C E0 4D 4E 5F F8 3D B1 48 13 05 21 37 87 0F 10 7E 19 9A 8F A2 8A 26 33 0F 87 BF 49 9C AD FE C9 5C
Squeezed block (part):
14 78 8F 5F B0 24 4F 4F