中国科学院机构知识库网格
Chinese Academy of Sciences Institutional Repositories Grid
Improved multidimensional zero-correlation linear cryptanalysis and applications to LBlock and TWINE

文献类型:会议论文

作者Wang, Yanfeng (1) ; Wu, Wenling (1)
出版日期2014
会议名称19th Australasian Conference on Information Security and Privacy, ACISP 2014
会议日期July 7, 2014 - July 9, 2014
会议地点Wollongong, NSW, Australia
页码1-16
中文摘要Zero-correlation linear cryptanalysis is a new method based on the linear approximations with correlation zero. In this paper, we propose a new model of multidimensional zero-correlation linear cryptanalysis by taking the equivalent relations of round keys into consideration. The improved attack model first finds out all the longest multidimensional zero-correlation linear distinguishers, then regards the distinguishers with the least independent guessed keys as the optimal distinguishers and finally chooses one optimal distinguisher to recover the secret key of cipher by using the partial-compression technique. Based on the improved attack model, we extend the original 22-round zero-correlation linear attack on LBlock and first evaluate the security of TWINE against the zero-correlation linear cryptanalysis. There are at least 8×8 classes of multidimensional zero-correlation linear distinguishers for 14-round LBlock and TWINE. After determining the corresponding optimal distinguisher, we carefully choose the order of guessing keys and guess each subkey nibble one after another to achieve an attack on 23-round LBlock, an attack on 23-round TWINE-80 and another attack on 25-round TWINE-128. As far as we know, these results are the currently best results on LBlock and TWINE in the single key scenario except the optimized brute force attack. © 2014 Springer International Publishing Switzerland.
英文摘要Zero-correlation linear cryptanalysis is a new method based on the linear approximations with correlation zero. In this paper, we propose a new model of multidimensional zero-correlation linear cryptanalysis by taking the equivalent relations of round keys into consideration. The improved attack model first finds out all the longest multidimensional zero-correlation linear distinguishers, then regards the distinguishers with the least independent guessed keys as the optimal distinguishers and finally chooses one optimal distinguisher to recover the secret key of cipher by using the partial-compression technique. Based on the improved attack model, we extend the original 22-round zero-correlation linear attack on LBlock and first evaluate the security of TWINE against the zero-correlation linear cryptanalysis. There are at least 8×8 classes of multidimensional zero-correlation linear distinguishers for 14-round LBlock and TWINE. After determining the corresponding optimal distinguisher, we carefully choose the order of guessing keys and guess each subkey nibble one after another to achieve an attack on 23-round LBlock, an attack on 23-round TWINE-80 and another attack on 25-round TWINE-128. As far as we know, these results are the currently best results on LBlock and TWINE in the single key scenario except the optimized brute force attack. © 2014 Springer International Publishing Switzerland.
收录类别EI
会议录出版地Springer Verlag
语种英语
ISSN号3029743
ISBN号9783319083438
源URL[http://ir.iscas.ac.cn/handle/311060/16619]  
专题软件研究所_软件所图书馆_会议论文
推荐引用方式
GB/T 7714
Wang, Yanfeng ,Wu, Wenling . Improved multidimensional zero-correlation linear cryptanalysis and applications to LBlock and TWINE[C]. 见:19th Australasian Conference on Information Security and Privacy, ACISP 2014. Wollongong, NSW, Australia. July 7, 2014 - July 9, 2014.

入库方式: OAI收割

来源:软件研究所

浏览0
下载0
收藏0
其他版本

除非特别说明,本系统中所有内容都受版权保护,并保留所有权利。