对8轮ARIA算法的差分枚举攻击
doi: 10.3724/SP.J.1146.2010.01292
Differential Enumeration Attack on ARIA
-
摘要: 给出了ARIA算法4轮差分性质,提出了对ARIA算法的差分枚举攻击。攻击了7轮和8轮ARIA-256算法,攻击的数据复杂度是256,攻击7轮时预计算的复杂度为2238.2次加密7轮ARIA算法,恢复密钥的计算复杂度是2124.2次加密7轮ARIA算法;攻击8轮时预计算的复杂度为2238次加密8轮ARIA算法,恢复密钥的计算复杂度是2253.6次加密8轮ARIA算法。Abstract: The 4-round ARIA differential property is given, and the differential enumeration attack on 7-round and 8-round ARIA-256 is presented in this paper. The attacks need 256 chosen plaintexts. The attack on 7-round ARIA has the time complexity of 2238.2 7-round ARIA encryptions in the preprocessing phase and 2124.2 7-round ARIA encryptions in the processing phase. The attack on 8-round ARIA has the time complexity of 2238 8-round ARIA encryptions in the preprocessing phase and 2253.6 8-round ARIA encryptions in the processing phase.
-
Key words:
- Block cipher /
- ARIA /
- Differential cryptanalysis
计量
- 文章访问数: 3188
- HTML全文浏览量: 108
- PDF下载量: 637
- 被引次数: 0