Differential Fault Analysis and Meet-in-the-Middle Attack on the Block Cipher KATAN32

被引:1
作者
张文英 [1 ,2 ]
刘枫 [1 ]
刘宣 [1 ]
孟帅 [1 ]
机构
[1] School of Information Science and Engineering,Shandong Normal University
[2] State Key Laboratory of Information Security,Institute of Information Engineering,Chinese Academy of Sciences
基金
中国国家自然科学基金;
关键词
KATAN32; differential fault analysis; meet-in-the-middle (MITM) attack; block cipher; lightweight cipher;
D O I
暂无
中图分类号
TN918.1 [理论];
学科分类号
070104 ;
摘要
We investigate the lightweight block cipher KATAN family which consists of three variants with 32, 48 and 64-bit block sizes, called KATAN32, KATAN48 and KATAN64 respectively. However, three variants all have the same key length of 80 bits. On the basis of the bit-oriented faulty model and the differential analysis principle, we describe the attack that combines differential fault attack with the meet-in-the-middle (MITM) attack on the KATAN32. More precisely, inducing a fault at a bit, we can recover some linear differential fault equations on the key bits. During solving equations, without the help of computer, we need only algebraic deduction to obtain relations of some key bits. The complexity in this process is neglectable. The secret key of the full cipher can be recovered faster than exhaustive search for all three block sizes in the KATAN family. Our result describes that KATAN32 is vulnerable.
引用
收藏
页码:147 / 152
页数:6
相关论文
共 3 条