期刊文献+

MIBS分组密码的改进积分攻击

Improved Integral Attacks on MIBS Block Cipher
下载PDF
导出
摘要 MIBS算法是由Izadi等人在CANS 2009上提出的一个轻量级分组密码算法,整体采用Feistel结构,轮函数使用SP结构,分组长度为64 b,包含MIBS-64和MIBS-80这2个版本,适用于资源受限的环境,例如RFID(radio frequency identification)标签.研究MIBS算法针对积分攻击的安全性.首先,针对该算法的密钥编排算法,利用密钥搭桥技术,分别得到了MIBS-64和MIBS-80的轮密钥的相关性质.其次,利用基于MILP(mixed integer linear programming)的比特可分性的自动化建模搜索方法,构造了MIBS的8轮和9轮积分区分器.然后,基于8轮积分区分器,给出了12轮MIBS-64的密钥恢复攻击,数据复杂度为2^(60),时间复杂度为2^(63.42);最后,基于9轮积分区分器,给出了14轮MIBS-64的密钥恢复攻击,数据复杂度为2^(63),时间复杂度为2^(66).这是目前对MIBS-64和MIBS-80轮数最长的积分攻击. MIBS is a lightweight block cipher which was proposed by Izadi et al.at CANS 2009.Its overall encryption structure uses the typical Feistel network,and the round function adopts the SP network.MIBS supports both MIBS-64 and MIBS-80 versions,that is,it has 64-bit and 80-bit two key lengths with a 64-bit block size,and is suitable for strictly resource-constrained devices,such as low-cost RFID(radio frequency identification)tags.We study the integral attack on the block cipher MIBS.Firstly,we observe the key schedules of MIBS-64 and MIBS-80,and find some properties between their round keys by using the automatic search algorithm for key-bridging technique,respectively.Secondly,using the bit-based division property and the automatic modeling search method based on MILP(mixed integer linear programming),we find some 8-round and 9-round integral distinguishers of MIBS.Then,based on the 8-round integral distinguisher,we launch a 12-round key recovery attack for MIBS-64 with the data complexity2^(60),and the time complexity2^(63.42).Finally,based on the 9-round integral distinguisher,we launch a 14-round key recovery attack for MIBS-80 with the data complexity2^(63),and the time complexity2^(66).These two key recoveries are the current best integral attacks on the block cipher MIBS-64 and MIBS-80.
作者 毛永霞 吴文玲 张丽 Mao Yongxia;Wu Wenling;Zhang Li(Institute of Software,Chinese Academy of Sciences,Beijing 100190;University of Chinese Academy of Sciences,Beijing 100049)
出处 《计算机研究与发展》 EI CSCD 北大核心 2023年第12期2697-2708,共12页 Journal of Computer Research and Development
基金 国家自然科学基金项目(62072445)。
关键词 积分攻击 MIBS 密钥搭桥技术 部分和技术 密钥恢复 integral attack MIBS key-bridging technique partial sum technique key recovery
  • 相关文献

参考文献4

二级参考文献20

  • 1孙兵,李瑞林,屈龙江,李超.对低代数次数分组密码的SQUARE攻击[J].中国科学:信息科学,2010,40(6):777-785. 被引量:3
  • 2吴文玲,卫宏儒.低轮FOX分组密码的碰撞-积分攻击[J].电子学报,2005,33(7):1307-1310. 被引量:11
  • 3IZADI M,SADEGHIYAN B,SADEGHIANS,et al.MIBS:a new light-weight block cipher[C].CANS 2009.Berlin:Springer,2009:334-348.
  • 4BAY A,NAKAJARA J,and VAUDENAY S.Cryptanalysis of reduced-round MIBS block cipher[C].CANS 2010.Berlin:Springer,2010:1-19.
  • 5BOGDANOV A and RIJMEN V.Linear hulls with correlation zero and linear cryptanalysis of block ciphers[J].Designs,Codes and Cryptography,2014,70(3):369-383.
  • 6BOGDANOV A and WANG M.Zero correlation linear cryptanalysis with reduced data complexity[C].FSE 2012,Washington,DC,USA,2012:29-48.
  • 7BOGDANOV A,LEANDER G,NYBERG K,et al.Integral and multidimensional linear distinguishers with correlation zero[C].ASIACRYPT 2012,Beijing,China,2012:244-261.
  • 8SOLEIMANY H and NYBERG K.Zero-correlation linear cryptanalysis of reduced-round LBlock[J].Designs,Codes and Cryptography,2014,73(2):683-698.
  • 9WEN L,WANG M,and BOGDANOV A.Multidimensional zero-correlation linear cryptanalysis of E2[C].AFRICACRYPT 2014,Marrakesh,Morocco,2014:147-164.
  • 10BOGDANOV A,GENG H,WANG M,et al.Zero-correlation linear cryptanalysis with FFT and improved attacks on ISO standards Camellia and CLEFIA[C].SAC 2013,Burnaby,BC,Canada,2013:306-323.doi:10.1007/ 978-3-662-43414-7_16.

共引文献24

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部