This page uses content from Wikipedia and is licensed under CC BY-SA.
|First published||April 2000|
|Key sizes||128 bits|
|Block sizes||4096 bits|
|Best public cryptanalysis|
|Scott Fluhrer's differential attack breaks the cipher.|
The block size is 4096 bits—unusually large for a block cipher, but a standard disk sector size. Mercy uses a 128-bit secret key, along with a 128-bit non-secret tweak for each block. In disk encryption, the sector number would be used as a tweak. Mercy uses a 6-round Feistel network structure with partial key whitening. The round function uses a key-dependent state machine which borrows some structure from the stream cipher WAKE, with key-dependent S-boxes based on the Nyberg S-boxes also used in AES.
|This cryptography-related article is a stub. You can help Wikipedia by expanding it.|