A shift device for shifting a first place of a data word, which consists
of a plurality of places, to a second place so as to obtain a shifted
data word, wherein the first place is encrypted using a first encryption
parameter and wherein the second place is encrypted using a second
encryption parameter, includes a unit for shifting the first place of the
data word to the second place of the data word, a unit for re-encrypting
the first place from an encryption using the first encryption parameter
into an encryption using the second encryption parameter, and a control
for controlling the unit for shifting and the unit for re-encryption so
that the first place is first shifted to the second place and is then
re-encrypted, or that the first place is first re-encrypted and is then
shifted to the second place. This ensures that data encrypted either with
the first encryption parameter or with the second encryption parameter
are always shifted, thus making it harder for attackers to eavesdrop on
clear text data.