Full key-recovery attack on SpoC-128
Is there a practical full-strength key-recovery attack on the unmodified SpoC-128 authenticated-encryption scheme?
References
Primary source
Progress summary
Refreshed
Open
No public result has found a practical way to recover the entire secret key of the unchanged SpoC-128 system.
The problem asks whether the unmodified SpoC-128 authenticated-encryption scheme has a practical attack recovering its complete secret key. The retrieved record contains no claimed attack against that exact target.
Known results
- A 2020 cryptanalysis gives reduced-round attacks, including forgery and message-recovery attacks against -round SpoC-64.
- The same work gives a full-round time-memory-tradeoff key-recovery attack for SpoC-64, not SpoC-128.
- NIST’s 2020 assessment discusses reduced-round, related-key, and related-nonce analyses, and reports that they do not threaten SpoC-128’s security claims; the full scheme has rounds.
Current status (as of September 2026): No practical full-strength key-recovery attack on unmodified SpoC-128 is publicly reported; only reduced or modified settings have documented attacks.
Sources
- eprint.iacr.org
- csrc.nist.gov
- en.wikipedia.org
- inria.hal.science
- mschof.io
- eprint.iacr.org
- www-cdn.anthropic.com
- anthropic.com
- www-cdn.anthropic.com
- www-cdn.anthropic.com
- arxiv.org
- arxiv.org
- arxiv.org
- arxiv.org
- arxiv.org
- scientificamerican.com
- mathstodon.xyz
- mathstodon.xyz
- red.anthropic.com
- scientificamerican.com
- scientificamerican.com
Solutions 0
No solutions have been posted yet.