计算机工程与科学2012,Vol.34Issue(6):23-27,5.DOI:10.3969/j.issn.1007-130X.2012.06.005
对CRYPTON V1.0算法的积分攻击
New Integral Attack on CRYPTON V1.0
摘要
Abstract
CRYPTON VI. 0 is a block cipher with a 128-bit block size and a 128-bit key size. The linear layer of CRYPTON VI. 0 is designed based on bits, therefore integral attacks in a traditional way are of no value. In this paper> CRYPTON VI. 0 is analyzed. We trace the propagation of the plaintext structure at the bit-level to obtain the property, present a 3-round distinguisher and test it on the PC. In the distinguisher, 1024 chosen plaintexts are encrypted by a 3-round cipher, and each bit of the cipher text is balanced. Based on this distinguisher, the reduced-round CRYPTON VI. 0 is attacked. The result shows a 4-round attack needs 2" chosen plaintexts and 2" encryptions, a 5-round attack needs 2124 . Chosen plaintexts and 253 encryptions.关键词
分组密码/积分攻击/CRYPTON V1.0密码/比特模式Key words
block cipher/integral attack/CRYPTON VI. 0/bit-pattern分类
信息技术与安全科学引用本文复制引用
周庆,魏悦川,李超,吴翊..对CRYPTON V1.0算法的积分攻击[J].计算机工程与科学,2012,34(6):23-27,5.基金项目
国家自然科学基金资助项目(60975038,60803156) (60975038,60803156)
信息安全国家重点实验室开放基金资助项目(01-07) (01-07)