Multidimensional Linear Cryptanalysis of Feistel Ciphers
IACR TRANSACTIONS ON SYMMETRIC CRYPTOLOGY(2023)
摘要
This paper presents new generic attacks on Feistel ciphers that incorporate the key addition at the input of the non-invertible round function only. This feature leads to a specific vulnerability that can be exploited using multidimensional linear cryptanalysis. More specifically, our approach involves using key-independent linear trails so that the distribution of a combination of the plaintext and ciphertext can be computed. This makes it possible to use the likelihood-ratio test as opposed to the chi 2 test. We provide theoretical estimates of the cost of our generic attacks and verify these experimentally by applying the attacks to CAST-128 and LOKI91. The theoretical and experimental findings demonstrate that the proposed attacks lead to significant reductions in data-complexity in several interesting cases.
更多查看译文
关键词
Multidimensional linear cryptanalysis,Likelihood-ratio test,Generic attack,Feistel ciphers,CAST-128,LOKI91
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要