摘要
研究了ARIA在不可能差分分析下的安全性.通过对ARIA线性扩散层的分析,提出一类新的6轮ARIA的不可能差分,并从差分重量的角度,给出了2类具有一般形式的6轮ARIAR的不可能差分的结构和计数,从理论上证明了能够达到目前研究最优的6轮ARIA的所有不可能差分.研究结果表明,在输入输出差分重量为10的条件下,攻击6轮ARIA所需的数据量为2120个选择明文,计算量为294.5次6轮加密.
This paper studied the security of the block cipher ARIA against impossible differential cryptanalysis.By analyzing the property of the diffusion transformation,a new kind of nontrivial 6-round impossible differential was presented.Generally,considering the weigh of differential,these two different kinds of impossible differential structures and the count were proposed.Based on this,we can give out all the number of these two kinds 6-round impossible differential in theory.It is shown that,when guessing the input-and-output differential weight of 10,there are only two kinds of impossible differential and all of them can be used to attack the 6-round ARIA with the best result by now: the data complexity is 2120 chosen plaintexts,and the time complexity is 294.5 encryptions of 6-round ARIA.
出处
《上海交通大学学报》
EI
CAS
CSCD
北大核心
2011年第7期1063-1067,共5页
Journal of Shanghai Jiaotong University
关键词
密码学
不可能差分分析
ARIA分组密码
数据复杂性
cryptography
impossible differential cryptanalysis
ARIA block cipher
data complexity