对8轮mCrypton-96的中间相遇攻击  被引量:1

A Meet-in-the-Middle Attack on 8-Round mCrypton-96

在线阅读下载全文

作  者:王高丽[1,2] 甘楠[2] 

机构地区:[1]华东师范大学计算机科学与软件工程学院,上海200062 [2]东华大学计算机科学与技术学院,上海201620

出  处:《计算机研究与发展》2016年第3期666-673,共8页Journal of Computer Research and Development

基  金:国家自然科学基金项目(61572125;61373142);东华大学硕士研究生学位论文创新资助项目(112-06-0019025)~~

摘  要:在分析分组密码算法的安全性时,利用密钥关系来降低时间、存储和数据复杂度是一个常用的手段.在4轮mCrypton-96性质的基础上,利用密钥生成算法的弱点和S盒的性质,降低了攻击过程中需要猜测的密钥比特数,提出了对8轮mCrypton-96算法的中间相遇攻击,攻击的时间复杂度约为2^(93.5)次8轮mCrypton-96加密运算,存储复杂度为2^(47)B,数据复杂度为2^(57)个选择明文.mCrypton is a lightweight block cipher introduced in Information Security Application 2006 by Lim and Korkishko.mCrypton-64/96/128denote 3versions of the cipher with 64/96/128bkeys respectively.In this paper,we apply the meet-in-the-middle(MITM)attack on 8-round mCrypton-96,which improves the best MITM attack result on mCrypton-96 by 1round.When analyzing the security of block ciphers,using key relations to reduce the time complexity,memory complexity and data complexity is a common method.From the property of the key schedule of mCrypton-96,we know that each round key could calculate some information of the internal register by the algebraic structure of the key schedule,and some round keys could be deduced from the other round keys.By using the relationship of key schedule and the properties of S-box,we present a MITM attack on 8-round mCrypton-96 based on the 4-round distinguisher by adding 1round on the top and 3rounds at the bottom.The time,memory and data complexities of the attack are 2^(93.5) encryptions,2^(47) B and 2^(57) chosen plaintexts respectively.It is illustrated that mCrypton-96 not only has an efficient performance but also possesses strong security.

关 键 词:密码算法分析 中间相遇攻击 分组密码 mCrypton 密钥关系 

分 类 号:TP309[自动化与计算机技术—计算机系统结构]

 

参考文献:

正在载入数据...

 

二级参考文献:

正在载入数据...

 

耦合文献:

正在载入数据...

 

引证文献:

正在载入数据...

 

二级引证文献:

正在载入数据...

 

同被引文献:

正在载入数据...

 

相关期刊文献:

正在载入数据...

相关的主题
相关的作者对象
相关的机构对象