首页> 外文会议>International conference on cryptology in India >Improved Linear Cryptanalysis of Reduced-Round SIMON-32 and SIMON-48
【24h】

Improved Linear Cryptanalysis of Reduced-Round SIMON-32 and SIMON-48

机译:改进了圆形西蒙-32和西蒙-48的线性密码分析

获取原文

摘要

In this paper we analyse two variants of SIMON family of light-weight block ciphers against variants of linear cryptanalysis and present the best linear cryptanalytic results on these variants of reduced-round SIMON to date. We propose a time-memory trade-off method that finds differential/ linear trails for any permutation allowing low Hamming weight differential/linear trails. Our method combines low Hamming weight trails found by the correlation matrix representing the target permutation with heavy Hamming weight trails found using a Mixed Integer Programming model representing the target differential/linear trail. Our method enables us to find a 17-round linear approximation for SIMON-48 which is the best current linear approximation for SIMON-48. Using only the correlation matrix method, we are able to find a 14-round linear approximation for SIMON-32 which is also the current best linear approximation for SIMON-32. The presented linear approximations allow us to mount a 23-round key recovery attack on SIMON-32 and a 24-round Key recovery attack on SIMON-48/96 which are the current best results on SIMON-32 and SIMON-48. In addition we have an attack on 24 rounds of SIMON-32 with marginal complexity.
机译:在本文中,我们分析了Simon系列轻块块密码的两个变体,针对线性密码分析的变种,并呈现了最佳的线性密码结果对迄今为止这些减少的Simon的这些变种的结果。我们提出了一种时间记忆的折衷方法,用于找到允许低汉明权重差分/线性跟踪的差分/线性跟踪。我们的方法结合了所发现的具有代表目标置换的相关矩阵发现的低汉明重路径,其使用具有代表目标差分/线性跟踪的混合整数编程模型的重锤子重量跟踪。我们的方法使我们能够找到西蒙-48的17轮线性近似,这是Simon-48的最佳电流线性近似。仅使用相关矩阵方法,我们能够找到Simon-32的14轮线性近似,这也是Simon-32的最佳线性近似。呈现的线性近似允许我们在Simon-32上安装23轮键恢复攻击和Simon-48/96上的24轮键恢复攻击,这是Simon-32和Simon-48上的当前最佳结果。此外,我们对24轮SIMON-32进行了攻击,具有边际复杂性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号