Abstract:Firstly,generalize the definition of the linear bias of transformation, and then generalize the mathematical description of the linear bias of cipher, and present the relation between the linear bias of cipher and the linear bias of round function F. The upper bound of linear bias of each round within 16 rounds in DES cipher is finally given.