Multidimensional Linear Cryptanalysis of Feistel Ciphers

Betuel Askin Ozdemir,Tim Beyne,Vincent Rijmen

IACR TRANSACTIONS ON SYMMETRIC CRYPTOLOGY(2023)

引用 0|浏览0
暂无评分
摘要
This paper presents new generic attacks on Feistel ciphers that incorporate the key addition at the input of the non-invertible round function only. This feature leads to a specific vulnerability that can be exploited using multidimensional linear cryptanalysis. More specifically, our approach involves using key-independent linear trails so that the distribution of a combination of the plaintext and ciphertext can be computed. This makes it possible to use the likelihood-ratio test as opposed to the chi 2 test. We provide theoretical estimates of the cost of our generic attacks and verify these experimentally by applying the attacks to CAST-128 and LOKI91. The theoretical and experimental findings demonstrate that the proposed attacks lead to significant reductions in data-complexity in several interesting cases.
更多
查看译文
关键词
Multidimensional linear cryptanalysis,Likelihood-ratio test,Generic attack,Feistel ciphers,CAST-128,LOKI91
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要