| 注册
首页|期刊导航|密码学报(中英文)|基于代数技术的认证加密方案HiAE的安全性分析

基于代数技术的认证加密方案HiAE的安全性分析

胡西超

密码学报(中英文)2026,Vol.13Issue(4):770-784,15.
✕
密码学报(中英文)2026,Vol.13Issue(4):770-784,15.DOI:10.13868/j.cnki.jcr.000877

基于代数技术的认证加密方案HiAE的安全性分析

Security Analysis of AEAD Scheme HiAE by Algebraic Techniques

胡西超1

作者信息

  • 1. 密码科学技术全国重点实验室,北京 100080
  • 折叠

摘要

Abstract

HiAE is a well-designed AEAD scheme using AES round functions,delivering outstanding performance on both ARM and x86 processors.Some existing AEAD schemes such as Rocca(ToSC 2021)have been shown to be vulnerable when attackers can repeatedly query the decryption oracle with forged ciphertexts and random tags until a valid tag is accepted.Motivated by this,this study proposes the full key-recovery attack on HiAE using algebraic techniques under the same setting.Firstly,the meet-in-the-middle technique and guess-and-determine technique are employed to recover the state and derive a key-related equation resulting from two layers of AES round functions.Secondly,by adopting an algebraic approach to study the properties of the round function,the equation is decomposed into byte-level equations for divide-and-conquer.Finally,on the basis of byte-level equation solving,the guess-and-determine technique is further utilized to gradually narrow down the key space and to eventually recover the full key.The proposed attack achieves a data complexity of 2130 and a time complexity of approximately 2209,leveraging both encryption and decryption oracles with a success probability of 1.It is emphasized that the attack is conducted under a stronger adversarial scenario than that of HiAE's original security model and hence does not invalidate its original security claims.

关键词

HiAE算法/代数攻击/中间相遇/猜测确定/分而治之

Key words

HiAE/algebraic attack/meet-in-the-middle/guess-and-determine/divide-and-conquer

分类

信息技术与安全科学

引用本文复制引用

胡西超..基于代数技术的认证加密方案HiAE的安全性分析[J].密码学报(中英文),2026,13(4):770-784,15.

密码学报(中英文)

2095-7025

访问量0
|
下载量0
段落导航相关论文