<?xml version="1.0" encoding="UTF-8"?>
<!DOCTYPE ArticleSet PUBLIC "-//NLM//DTD PubMed 2.7//EN" "https://dtd.nlm.nih.gov/ncbi/pubmed/in/PubMed.dtd">
<ArticleSet>
<Article>
<Journal>
				<PublisherName>Iranian Society of Cryptology</PublisherName>
				<JournalTitle>The ISC International Journal of Information Security</JournalTitle>
				<Issn>2008-2045</Issn>
				<Volume></Volume>
				<Issue></Issue>
				<PubDate PubStatus="epublish">
					<Year>2026</Year>
					<Month>05</Month>
					<Day>15</Day>
				</PubDate>
			</Journal>
<ArticleTitle>Fast Exhaustive Search on AIM2</ArticleTitle>
<VernacularTitle></VernacularTitle>
			<FirstPage></FirstPage>
			<LastPage></LastPage>
			<ELocationID EIdType="pii">243623</ELocationID>
			
<ELocationID EIdType="doi">10.22042/isecure.2026.243623</ELocationID>
			
			<Language>EN</Language>
<AuthorList>
<Author>
					<FirstName>Arka</FirstName>
					<LastName>Debnath</LastName>
<Affiliation>Department of Electrical Engineering, KU Leuven, Leuven, Belgium</Affiliation>

</Author>
<Author>
					<FirstName>Mohammad</FirstName>
					<LastName>Mahzoun</LastName>
<Affiliation>Mohammad Mahzoun, 3MI Labs, Leuven, Belgium</Affiliation>

</Author>
</AuthorList>
				<PublicationType>Journal Article</PublicationType>
			<History>
				<PubDate PubStatus="received">
					<Year>2025</Year>
					<Month>10</Month>
					<Day>01</Day>
				</PubDate>
			</History>
		<Abstract>This paper describes a fast exhaustive search preimage attack on AIM2, an improved version of the one-way function AIM, proposed to address algebraic vulnerabilities found in its predecessor. Our attack transforms the polynomial system describing AIM2 over F2λ to a boolean polynomial system over F2, allowing for an exhaustive search by guessing input bits and solving a resulting linear system. Solving the whole system is not necessary for most incorrect guesses, and use of Gray code helps optimizing the iteration over all possible guesses. Our results show that the complexity of exhaustive search on AIM2, especially AIM2-I and AIM2-III is lower than previously estimated, though still higher than that of AES.</Abstract>
		<ObjectList>
			<Object Type="keyword">
			<Param Name="value">AIM2</Param>
			</Object>
			<Object Type="keyword">
			<Param Name="value">Cryptanalysis</Param>
			</Object>
			<Object Type="keyword">
			<Param Name="value">Fast Exhaustive Search</Param>
			</Object>
		</ObjectList>
<ArchiveCopySource DocType="pdf">https://www.isecure-journal.com/article_243623_df7e7e043f2cee4ba35212992999f57f.pdf</ArchiveCopySource>
</Article>
</ArticleSet>
