All publicly known attacks are computationally infeasible, and none of them affect the full 32-round Serpent. A 2011 attack breaks 11 round Serpent (all key sizes) with 2116 known plaintexts, 2107.5 time and 2104 memory (as described in [1]). The same paper also describes two attacks which break 12 rounds of Serpent-256. The first requires 2118 known plaintexts, 2228.8 time and 2228 memory. The other attack requires 2116 known plaintexts and 2121 memory but also requires 2237.5 time.
Serpent是一種對稱式分組加密演算法,是高级加密标准(AES)的候選者之一,其順序僅次於Rijndael演算法。設計者為羅斯·安德森(英语:Ross J. Anderson)、艾力·畢漢姆(英语:Eli Biham)及拉爾斯·克努森(英语:Lars Knudsen)。