$CHONKETHA
Heating UpSnapshot Window: 2026-08-18 13:00 UTC · ← Back to Crypto Overview
Social Momentum Summary
Total Engagement - Comments: 1, Retweets: 0, Likes: 36, Impressions: 2697
Verbatim Community Citations & Social Evidence 1 source posts analyzed
This assumes only one full round. But, the Poseidon cryptanalysis is pretty clear that you need enough full round S-boxes to "diffuse" the input entropy, in order for partial rounds to be safe. (And then the partial rounds are cheaply raising algebraic degree!)
![]()
AI visual note: This image shows the title page of a cryptanalysis paper titled "From Round Skipping to S-Box Skipping: Attacking Poseidon's Partial Layer via Subspace Restriction" by Amit Singh Bhati, Sundas Tariq, and Tomer Ashur (3MI Labs/COSIC, KU Leuven), with their abstract describing the Generalized S-box Skipping (GSR) gadget that distinguishes 23 rounds of the Poseidon hash function regardless of round constants. The accompanying post contextualizes this work by noting that the attack assumes only one full round, highlighting the cryptographic principle that enough full-round S-boxes are needed to "diffuse" input entropy for partial rounds to remain safe—a vulnerability the paper explicitly exploits through subspace restriction techniques.