Armour, Marcel, and Bertram Poettering. “Substitution Attacks Against Message Authentication”. IACR Transactions on Symmetric Cryptology, vol. 2019, no. 3, Sept. 2019, pp. 152-68, doi:10.13154/tosc.v2019.i3.152-168.