“Generalized Nonlinear Invariant Attack and a New Design Criterion for Round Constants” (2018) IACR Transactions on Symmetric Cryptology, 2018(4), pp. 62–79. doi:10.13154/tosc.v2018.i4.62-79.