What's the current state of the art of attacks against AES? Is the
advice that AES-128 is (slightly) more secure than AES-256, at least
in theory, still current?

(I'm also curious as to whether anyone has ever proposed fixes to the
weaknesses in the key schedule...)

Perry
-- 
Perry E. Metzger                [email protected]
_______________________________________________
The cryptography mailing list
[email protected]
http://www.metzdowd.com/mailman/listinfo/cryptography

Reply via email to