引用本文:王薇,王小云.CLEFIA-128/192/256的不可能差分分析.软件学报,2009,20(9):2587-2596
【打印本页】   【下载PDF全文】   查看/发表评论  【EndNote】   【RefMan】   【BibTex】
←前一篇|后一篇→ 过刊浏览    高级检索
本文已被:浏览 5978次   下载 7921 本文二维码信息
码上扫一扫!
分享到: 微信 更多
CLEFIA-128/192/256的不可能差分分析
王薇1, 王小云1,2
1.山东大学 密码技术与信息安全教育部重点实验室,山东 济南 250100;2.清华大学 高等研究中心,北京 100084
摘要:
对分组密码算法CLEFIA进行不可能差分分析.CLEFIA算法是索尼公司在2007年快速软件加密大会(FSE)上提出来的.结合新发现和新技巧,可有效过滤错误密钥,从而将算法设计者在评估报告中给出的对11圈CLEFIA-192/256的攻击扩展到11圈CLEFIA-128/192/256,复杂度为2103.1次加密和2103.1个明文.通过对明文附加更多限制条件,给出对12圈CLEFIA-128/192/256的攻击,复杂度为2119.1次加密和2119.1个明文.而且,引入一种新的生日筛法以降低预计算的时间复杂度.此外,指出并改正了Tsunoo等人对12圈CLEFIA的攻击中复杂度计算方面的错误.
关键词:  分组密码  密码分析  不可能差分分析  生日筛法  CLEFIA
DOI:
分类号:
基金项目:Supported by the National Natural Science Foundation of China under Grant No.60525201 (国家自然科学基金); the National Basic Research Program of China under Grant No.2007CB807902 (国家重点基础研究发展计划(973))
Impossible Differential Cryptanalysis of CLEFIA-128/192/256
WANG Wei,WANG Xiao-Yun
Abstract:
An improved impossible differential attack on the block cipher CLEFIA is presented. CLEFIA was proposed by Sony Corporation at FSE 2007. Combining some observations with new tricks, the wrong keys are filtered out more efficiently, and the original impossible differential attack on 11-round CLEFIA-192/256 published by the designers, is extended to CLEFIA-128/192/256, with about 2103.1 encryptions and 2103.1 chosen plaintexts. By putting more constraint conditions on plaintext pairs, we present an attack on 12-round CLEFIA for all three key lengths with 2119.1 encryptions and 2119.1 chosen plaintexts. Moreover, a birthday sieve method is introduced to decrease the complexity of the precomputation. And an error about the time complexity evaluation in Tsunoo et al.’s attack on 12-round CLEFIA is pointed out and corrected.
Key words:  block cipher  cryptanalysis  impossible differential cryptanalysis  birthday sieve  CLEFIA

引用本文:
【打印本页】   【下载PDF全文】   查看/发表评论  【EndNote】   【RefMan】   【BibTex】
←前一篇|后一篇→ 过刊浏览    高级检索
本文已被:浏览次   下载  
分享到: 微信 更多
摘要:
关键词:  
DOI:
分类号:
基金项目:
Abstract:
Key words: