通信学报 ›› 2012, Vol. 33 ›› Issue (11): 91-99.doi: 10.3969/j.issn.1000-436x.2012.11.012

• 学术论文 • 上一篇    下一篇

构造零和区分器的新方法

董乐1,2,吴文玲1,吴双1,邹剑1,2   

  1. 1 中国科学院 软件研究所,北京 100190
    2 中国科学院 研究生院,北京 100190
  • 出版日期:2012-11-25 发布日期:2017-07-25
  • 基金资助:
    国家自然科学基金资助项目;国家自然科学基金资助项目

Novel method of constructing the zero-sum distinguishers

Le DONG1,2,Wen-ling WU1,Shuang WU1,Jian ZHOU1,2   

  1. 1 Institute of Software,Chinese Academy of Sciences,Beijing 100190,China
    2 Graduate University,Chinese Academy of Sciences,Beijing 100190,China
  • Online:2012-11-25 Published:2017-07-25
  • Supported by:
    The National Natural Science Foundation of China;The National Natural Science Foundation of China

摘要:

通过分析具有相似结构的AES 类置换的扩散性质,提出了一种构造零和区分器的新方法。这种方法组合了高阶积分攻击和高阶差分攻击,利用选择的一个确定其活跃模式的中间状态,构造一条高阶积分路径,然后以此路径的2个终点作为起始点,再构造高阶差分路径。利用此方法,改进了对PHOTON杂凑函数族2个置换的全轮零和攻击,并对进入SHA-3最终轮的JH算法的核心函数构造了31.5轮的零和区分器。

关键词: AES类, 零和区分器, 高阶差分攻击, 高阶积分攻击, PHOTON, JH

Abstract:

A novel method of constructing the zero-sum distinguishers for AES-like permutations was proposed by considering the diffusion properties of these permutations,which have the similar construction.The method combined the higher-order integral attack and the higher-order differential attack.Utilizing the selected intermediate-state-structure whose active mode was determined,a higher-order integral path was constructed.Then,a higher-order differential trace was built from the two ends of the integral path.Applying the method,the full-round zero-sum attack on two permutations adopted by the PHOTON family was improved.Besides,a 31.5-round zero-sum distinguisher of the core function of JH hash function was constructed,which entered into the final round of the SHA-3 competition.

Key words: AES-like, zero-sum distinguishers, higher-order differential attack, higher-order integral attack, PHOTON, JH

No Suggested Reading articles found!