跳到主要导航 跳到搜索 跳到主要内容

Weak keys of the full MISTY1 block cipher for related-key differential cryptanalysis

  • Jiqiang Lu*
  • , Wun She Yap
  • , Yongzhuang Wei
  • *此作品的通讯作者
  • Agency for Science, Technology and Research, Singapore
  • Multimedia University
  • Guilin University of Electronic Technology
  • CAS - Institute of Software

科研成果: 书/报告/会议事项章节会议稿件同行评审

摘要

The MISTY1 block cipher has a 64-bit block length, a 128-bit user key and a recommended number of 8 rounds. It is a Japanese CRYPTREC-recommended e-government cipher, a European NESSIE selected cipher, and an ISO international standard. Despite of considerable cryptanalytic efforts during the past fifteen years, there has been no published cryptanalytic attack on the full MISTY1 cipher algorithm. In this paper, we present a related-key differential attack on the full MISTY1 under certain weak key assumptions: We describe 2 103.57 weak keys and a related-key differential attack on the full MISTY1 with a data complexity of 261 chosen ciphertexts and a time complexity of 290.93 encryptions. For the first time, our result exhibits a cryptographic weakness in the full MISTY1 cipher (when used with the recommended 8 rounds), and shows that the MISTY1 cipher is distinguishable from an ideal cipher and thus cannot be regarded to be an ideal cipher.

源语言英语
主期刊名Topics in Cryptology, CT-RSA 2013 - The Cryptographers' Track at the RSA Conference 2013, Proceedings
389-404
页数16
DOI
出版状态已出版 - 2013
已对外发布
活动Cryptographers' Track at the RSA Conference 2013, CT-RSA 2013 - San Francisco, CA, 美国
期限: 25 2月 20131 3月 2013

出版系列

姓名Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
7779 LNCS
ISSN(印刷版)0302-9743
ISSN(电子版)1611-3349

会议

会议Cryptographers' Track at the RSA Conference 2013, CT-RSA 2013
国家/地区美国
San Francisco, CA
时期25/02/131/03/13

指纹

探究 'Weak keys of the full MISTY1 block cipher for related-key differential cryptanalysis' 的科研主题。它们共同构成独一无二的指纹。

引用此