期刊文献+

轻量级分组密码算法ESF的安全性分析 被引量:5

Security Analysis of Lightweight Block Cipher ESF
下载PDF
导出
摘要 自动化分析是当前对密码算法进行安全性评估的重要方法之一,具有高效、易实现的特点.对面向位的分组密码,自从Sun等人在2014年亚洲密码年会上提出基于MILP问题的差分和线性自动化搜索方法,该方法受到了许多密码学者的关注.目前,针对求解多轮密码算法MILP模型,如何减少变量和约束不等式的研究工作相对较少,还有很多问题有待解决.根据异或操作的差分传播模式,在2017年欧洲密码年会上,Sasaki等人给出了不带假设变量的新约束不等式,该约束不等式在降低变量和约束数量的前提下保留了异或操作的差分传播性质.同时,对于S盒的性质,当输入差分变量(线性掩码)非零时,该S盒必定活跃,Sun等人用了4个约束不等式来刻画该性质,经过简单的变换,可以用1个约束来表示该性质.基于这些精炼的约束和自动化搜索方法,针对轻量级分组密码算法ESF,建立单密钥下精炼的差分和线性MILP模型,首次给出了ESF算法在单密钥情形下的差分和线性分析结果,得到了15轮ESF算法差分最小活跃S盒数量为19和16轮ESF算法线性最小活跃S盒数量为15.此外,还搜索到了轮数最长的不可能差分和零相关线性逼近区分器. Automatic analysis is one of the important methods to evaluate the security of cryptographic algorithms.It is characterized by high efficiency and easily implement.In ASIACRYPT 2014,Sun et al.presented a MILP-based automatic search differential and linear trails method for bit-oriented block ciphers,which has attracted the attention of many cryptographers.At present,there are still a lack of research about solving the MILP model,such as how to reduce the number of variables and constraint inequalities.According to the differential propagation model of the XOR operation,in EUROCRYPT2017,Sasaki et al.gave a set of new constraints without dummy variables.The new constraint inequalities can not only preserve the differential propagation for XOR operation,but also reduce the number of variables.At the same time,Sun et al.uses four constraints to describe the property when the input differential variable(the linear mask variable)of an S-box is non-zero and the S-box must be an active,but in this paper,we just use one constraint.Based on these refined constraints and the automatic method for finding high probability trails of block cipher,we establish the refined differential and linear MILP model under the single key assumption for the lightweight block cipher ESF.We have found that the minimum number of active S-boxes in 15-round differential trail of ESF is 19 and the number is 15 in 16-round linear trail.Moreover,we find so far the longest impossible differential and zero-correlation linear approximation distinguishers of ESF.
出处 《计算机研究与发展》 EI CSCD 北大核心 2017年第10期2224-2231,共8页 Journal of Computer Research and Development
基金 国家自然科学基金项目(61502532 61379150 61772519 61309016 61502529) 数学工程与先进计算国家重点实验室开放基金课题(2016A02) 河南省重点科技攻关计划项目(122102210126 092101210502)~~
关键词 差分密码分析 线性密码分析 不可能差分 零相关线性逼近 ESF MILP differential cryptanalysis linear cryptanalysis impossible differential zero-correlation linear approximation ESF MILP
  • 相关文献

参考文献3

二级参考文献53

  • 1吴文玲,张文涛,冯登国.Impossible Differential Cryptanalysis of Reduced-Round ARIA and Camellia[J].Journal of Computer Science & Technology,2007,22(3):449-456. 被引量:20
  • 2Leander G, Paar C, Poschmann A, et al. New lightweight DES variants. In: Proceedings of 14th International Workshop on Fast Software Encryption, Luxembourg, 2007. 196 210.
  • 3Engels D, Saarinen M-J O, Schweitzer P, et al. The hummingbird-2 lightweight authenticated encryption algorithm. In: Proceedings of 7th International Workshop on Security and Privacy, Amherst, 2011. 19-31.
  • 4De Cannire C, Dunkelman O, Kneevi5 M. KATAN and KTANTAN a family of small and efficient hardware-oriented block ciphers. In: Proceedings of llth International Workshop on Cryptographic Hardware and Embedded Systems, Lausanne, 2009. 272-288.
  • 5Gong Z, Nikova S, Law Y W. KLEIN: a new family of lightweight block ciphers. In: Juels A, Paar C, eds. RFID Security and Privacy. Berlin/Heidelberg: Springer-Verlag, 2011. 1-18.
  • 6Wu W L, Zhang L. LBlock: a lightweight block cipher. In: Proceedings of 9th International Conference on Applied Cryptography and Network Security, Nerja, 2011. 327 -344.
  • 7Guo J, Peyrin T, Poschmann A, et al. The LED block cipher. In: Proceedings of 13th International Workshop on Cryptographic Hardware and Embedded Systems, Nara, 2011. 326- 341.
  • 8Shibutani K, Isobe T, Hiwatari H, et al. Piccolo: an ultra-lightweight blockcipher. In: Proceedings of 13th International Workshop on Cryptographic Hardware and Embedded Systems, Nara, 2011. 342-357.
  • 9Bogdanov A, Knudsen L R, Leander G, et al. PRESENT: an ultra-lightweight block cipher. In: Proceedings of 9th International Workshop on Cryptographic Hardware and Embedded Systems, Vienna, 2007. 450- 466.
  • 10Beaulieu R, Shots D, Smith J, et al. The SIMON and SPECK families of lightweight block ciphers. Cryptology ePrint Archive, Report 2013/404, 2013. http://eprint.iacr.org/.

共引文献34

同被引文献25

引证文献5

二级引证文献6

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部