Journal on Communications ›› 2023, Vol. 44 ›› Issue (4): 145-153.doi: 10.11959/j.issn.1000-436x.2023085

• Papers • Previous Articles     Next Articles

Improved integral attack——random linear distinguish and key recovery attack

Shaoyu DU   

  1. State Key Laboratory of Cryptology, Beijing 100878, China
  • Revised:2023-03-21 Online:2023-04-25 Published:2023-04-01

Abstract:

Based on the integral attack and collision attack of four rounds of AES, a random linear distinguish attack against four rounds of SP block ciphers was proposed, which took advantage of the non-uniformity of linear biases’ distribution between some blocks of plaintext and inner state.Combined with precomputation, a key recovery attack against four rounds of AES-like block ciphers was proposed.For LED-64, the results of distinguish attack and key recovery attack were given.Therein for LED-64 of 1-Step, the probability of successful distinguish attack is 85% under the condition that the data complexity is 28 and the computational complexity is 216 basic operation.For LED-64 of 2-Step, the calculation complexity of the key recovery attack under the condition of related key is 214 basic operation, the data complexity is 28, and the precomputation storage complexity is 238 half bytes.

Key words: integral attack, distinguish attack, block cipher analysis, AES, LED

CLC Number: 

No Suggested Reading articles found!