首页> 外文会议>Selected Areas in Cryptography >A Chosen IV Attack Against Turing
【24h】

A Chosen IV Attack Against Turing

机译:针对图灵的IV选择攻击

获取原文

摘要

In this paper, we show that the key scheduling algorithm of the recently proposed stream cipher Turing suffers from important flaws. These weaknesses allow an attacker that chooses the initialization vector (IV) to recover some partial information about the secret key. In particular, when using Turing with a 256-bit secret key and a 128-bit IV, we present an attack that requires the ability to choose 2~(37) IV and then recovers the key with complexity 2~(72), requiring 2~(36) bytes of memory.
机译:在本文中,我们证明了最近提出的流密码Turing的关键调度算法存在重要缺陷。这些弱点使得选择初始化向量(IV)的攻击者可以恢复有关秘密密钥的部分信息。特别是,当使用具有256位密钥和128位IV的Turing时,我们提出的攻击需要选择2〜(37)IV的能力,然后恢复复杂度为2〜(72)的密钥,这需要2〜(36)个字节的内存。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号