Integral Cryptanalysis of Reduced Round FOX64
-
摘要: FOX系列算法是一類基于Lai-Massey模型設(shè)計的分組密碼算法。該文首先評估低輪FOX64算法抵抗零相關(guān)線性分析的能力,給出4輪FOX64算法的零相關(guān)線性區(qū)分器。然后,利用零相關(guān)線性區(qū)分器與積分區(qū)分器的關(guān)系,首次得到4輪FOX64算法的積分區(qū)分器。最后,利用積分區(qū)分器分析5, 6, 7, 8輪FOX64算法,攻擊的時間復(fù)雜度分別約為252.7, 2116.7, 2180.7, 2244.7次加密,數(shù)據(jù)復(fù)雜度為250個選擇明文。該文首次給出攻擊8輪FOX64/256時間復(fù)雜度小于窮舉攻擊的有效攻擊。
-
關(guān)鍵詞:
- 密碼學 /
- 分組密碼 /
- 密碼分析 /
- FOX64算法 /
- 零相關(guān)-積分分析
Abstract: FOX family block ciphers are based on Lai-Massey scheme. Firstly, the evaluation is performed on the ability of the reduced round FOX64 to resist zero-correlation linear cryptanalysis, and some 4-round zero- correlation linear distinguishers are presented. Then, by using the relation between the integral distinguishers and zero-correlation distinguishers, the 4-round integral distinguishers of FOX64 are found. Finally, the 4-round integral distinguishers are used to attack 5, 6, 7 and 8 rounds FOX64 with the time complexity of 252.7, 2116.7, 2180.7 and 2244.7 encryptions respectively, and the data complexity is 250 chosen plaintexts. This is the first paper pointing out that 8-round FOX64/256 is vulnerable against the statistical attack.-
Key words:
- Cryptography /
- Block cipher /
- Cryptanalysis /
- FOX 64 algorithm /
- Zero-correlation integral cryptanalysis
-
計量
- 文章訪問數(shù): 1589
- HTML全文瀏覽量: 199
- PDF下載量: 364
- 被引次數(shù): 0