Block Cipher Invariants as Eigenvectors of Correlation Matrices

被引:10
作者
Beyne, Tim [1 ]
机构
[1] Katholieke Univ Leuven, IMEC, COSIC, Leuven, Belgium
关键词
Invariant subspace attack; Nonlinear invariant attack; Linear cryptanalysis; Integral cryptanalysis; Correlation matrices; Midori-64;
D O I
10.1007/s00145-020-09344-1
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
A new approach to invariant subspaces and nonlinear invariants is developed. This results in both theoretical insights and practical attacks on block ciphers. It is shown that, with minor modifications to some of the round constants, Midori-64 has a nonlinear invariant with 296+264 corresponding weak keys. Furthermore, this invariant corresponds to a linear hull with maximal correlation. By combining the new invariant with integral cryptanalysis, a practical key-recovery attack on ten rounds of unmodified Midori-64 is obtained. The attack works for 296 weak keys and irrespective of the choice of round constants. The data complexity is 1.25 center dot 221 chosen plaintexts, and the computational cost is dominated by 256 block cipher calls. The validity of the attack is verified by means of experiments.
引用
收藏
页码:1156 / 1183
页数:28
相关论文
共 26 条
[1]  
Abdelraheem MA, 2012, LECT NOTES COMPUT SC, V7417, P50
[2]   Zero-Correlation Attacks on Tweakable Block Ciphers with Linear Tweakey Expansion [J].
Ankele, Ralph ;
Dobraunig, Christoph ;
Guo, Jian ;
Lambooij, Eran ;
Leander, Gregor ;
Todo, Yosuke .
IACR TRANSACTIONS ON SYMMETRIC CRYPTOLOGY, 2019, 2019 (01) :192-235
[3]  
[Anonymous], 2017, State of the Art in Lightweight Symmetric Cryptography'
[4]  
[Anonymous], 1971, An introduction to probability theory and its applications, DOI DOI 10.2307/2282584
[5]   Midori: A Block Cipher for Low Energy [J].
Banik, Subhadeep ;
Bogdanov, Andrey ;
Isobe, Takanori ;
Shibutani, Kyoji ;
Hiwatari, Harunaga ;
Akishita, Toru ;
Regazzoni, Francesco .
ADVANCES IN CRYPTOLOGY - ASIACRYPT 2015, PT II, 2015, 9453 :411-436
[6]   Proving Resistance Against Invariant Attacks: How to Choose the Round Constants [J].
Beierle, Christof ;
Canteaut, Anne ;
Leander, Gregor ;
Rotella, Yann .
ADVANCES IN CRYPTOLOGY - CRYPTO 2017, PART II, 2017, 10402 :647-678
[7]   The SKINNY Family of Block Ciphers and Its Low-Latency Variant MANTIS [J].
Beierle, Christof ;
Jean, Jeremy ;
Koelbl, Stefan ;
Leander, Gregor ;
Moradi, Amir ;
Peyrin, Thomas ;
Sasaki, Yu ;
Sasdrich, Pascal ;
Sim, Siang Meng .
ADVANCES IN CRYPTOLOGY (CRYPTO 2016), PT II, 2016, 9815 :123-153
[8]  
Beyne T., 2018, 2018763 CRYPT EPRINT
[9]  
Beyne T, 2018, LECT NOTES COMPUT SC, V11272, P3, DOI 10.1007/978-3-030-03326-2_1
[10]  
Borghoff J, 2012, LECT NOTES COMPUT SC, V7658, P208, DOI 10.1007/978-3-642-34961-4_14