Zodiac算法新的Square攻击
doi: 10.3724/SP.J.1146.2010.00388
New Square Attack on Zodiac
-
摘要: 该文重新评估了Zodiac算法抗Square攻击的能力。Zodiac算法存在8轮Square区分器,该文首先根据算法的结构特性,给出了Zodiac的4个等价结构,而后利用等价结构得到了两个新的9轮Square区分器。利用新的区分器,对不同轮数的Zodiac算法实施了Square攻击,对12轮,13轮,14轮,15轮和16轮Zodiac的攻击复杂度分别为237.3,262.9,296.1,2137.1和2189.5次加密运算,选择明文数分别为210.3,211,211.6,212.1和212.6。结果表明:完整16轮192 bit密钥的Zodiac算法是不抗Square攻击的。Abstract: This paper re-evaluates the security of Zodiac against Square attacks. There are 8-round Square distinguishers of Zodiac. In this paper, four equivalent structures of Zodiac are given, based on which two new 9-round distinguishers are proposed. Then by using the 9-round Square distinguishers, Square attacks are applied to 12/13/14/15/16-round Zodiac with time complexities being 237.3, 262.9, 296.1, 2137.1, 2189.5, and data complexities being 210.3, 211, 211.6, 212.1, 212.6, respectively. Additionally, these attacks show that full 16-round Zodiac-192 is not immune to Square attack.
-
Key words:
- Cryptography /
- Zodiac /
- Equivalent structures /
- Distinguisher /
- Square attack
计量
- 文章访问数: 3858
- HTML全文浏览量: 88
- PDF下载量: 614
- 被引次数: 0