Multidimensional Linear Cryptanalysis of Feistel Ciphers

被引:0
作者
Ozdemir, Betuel Askin [1 ]
Beyne, Tim [1 ]
Rijmen, Vincent [1 ,2 ]
机构
[1] COSIC, KU Leuven, Leuven, Belgium
[2] Univ Bergen, Bergen, Norway
关键词
Multidimensional linear cryptanalysis; Likelihood-ratio test; Generic attack; Feistel ciphers; CAST-128; LOKI91;
D O I
10.46586/tosc.v2023.i4.1-27
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
This paper presents new generic attacks on Feistel ciphers that incorporate the key addition at the input of the non-invertible round function only. This feature leads to a specific vulnerability that can be exploited using multidimensional linear cryptanalysis. More specifically, our approach involves using key-independent linear trails so that the distribution of a combination of the plaintext and ciphertext can be computed. This makes it possible to use the likelihood-ratio test as opposed to the chi 2 test. We provide theoretical estimates of the cost of our generic attacks and verify these experimentally by applying the attacks to CAST-128 and LOKI91. The theoretical and experimental findings demonstrate that the proposed attacks lead to significant reductions in data-complexity in several interesting cases.
引用
收藏
页码:1 / 27
页数:27
相关论文
empty
未找到相关数据