Complementing Feistel Ciphers

被引:4
|
作者
Biryukov, Alex [1 ]
Nikolic, Ivica [2 ]
机构
[1] Univ Luxembourg, Luxembourg, Luxembourg
[2] Nanyang Technol Univ, Singapore, Singapore
来源
FAST SOFTWARE ENCRYPTION (FSE 2013) | 2014年 / 8424卷
基金
新加坡国家研究基金会;
关键词
Complementation; Feistel; Camellia; GOST;
D O I
10.1007/978-3-662-43933-3_1
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In this paper, we propose related-key differential distinguishers based on the complementation property of Feistel ciphers. We show that with relaxed requirements on the complementation, i.e. the property does not have to hold for all keys and the complementation does not have to be on all bits, one can obtain a variety of distinguishers. We formulate criteria sufficient for attacks based on the complementation property. To stress the importance of our findings we provide analysis of the full-round primitives: - For the hash mode of Camellia-128 without FL, FL-1 layers, differential multicollisions with 2(112) time. - For GOST, practical recovery of the full key with 31 related keys and 2(38) time/data.
引用
收藏
页码:3 / 18
页数:16
相关论文
共 50 条