TY - GEN
T1 - The higher-order meet-in-the-middle attack and its application to the Camellia block cipher (extended abstract)
AU - Lu, Jiqiang
AU - Wei, Yongzhuang
AU - Kim, Jongsung
AU - Pasalic, Enes
PY - 2012
Y1 - 2012
N2 - The meet-in-the-middle (MitM) attack is a technique for analysing the security of a block cipher. In this paper, we propose an extension of the MitM attack, which we call the higher-order meet-in-the-middle (HO-MitM) attack; the core idea of the HO-MitM attack is to use multiple plaintexts to cancel some key-dependent component(s) or parameter(s) when constructing a basic unit of "value-in-the-middle". We introduce a novel approach, which combines integral cryptanalysis with the MitM attack, to construct HO-MitM attacks on 10-round Camellia under 128 key bits, 11-round Camellia under 192 key bits and 12-round Camellia under 256 key bits, all of which include FL/FL-1 functions. Finally, we apply an existing approach to construct HO-MitM attacks on 14-round Camellia without FL/FL-1 functions under 192 key bits and 16-round Camellia without FL/FL-1 functions under 256 key bits.
AB - The meet-in-the-middle (MitM) attack is a technique for analysing the security of a block cipher. In this paper, we propose an extension of the MitM attack, which we call the higher-order meet-in-the-middle (HO-MitM) attack; the core idea of the HO-MitM attack is to use multiple plaintexts to cancel some key-dependent component(s) or parameter(s) when constructing a basic unit of "value-in-the-middle". We introduce a novel approach, which combines integral cryptanalysis with the MitM attack, to construct HO-MitM attacks on 10-round Camellia under 128 key bits, 11-round Camellia under 192 key bits and 12-round Camellia under 256 key bits, all of which include FL/FL-1 functions. Finally, we apply an existing approach to construct HO-MitM attacks on 14-round Camellia without FL/FL-1 functions under 192 key bits and 16-round Camellia without FL/FL-1 functions under 256 key bits.
KW - Block cipher
KW - Camellia
KW - Integral cryptanalysis
KW - Meet-in-the-middle attack
UR - https://www.scopus.com/pages/publications/84871588147
U2 - 10.1007/978-3-642-34931-7_15
DO - 10.1007/978-3-642-34931-7_15
M3 - 会议稿件
AN - SCOPUS:84871588147
SN - 9783642349300
T3 - Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
SP - 244
EP - 264
BT - Progress in Cryptology, INDOCRYPT 2012 - 13th International Conference on Cryptology in India, Proceedings
T2 - 13th International Conference on Cryptology in India, INDOCRYPT 2012
Y2 - 9 December 2012 through 12 December 2012
ER -