基于2001年ASIACRYPT(亚密会)会议上Sugita等人提出的9轮截断差分区分器,提出了Camellia算法的10轮截断差分区分器.进一步地利用这个区分器和密钥恢复中的提前抛弃技术,给出了12轮Camellia-128的攻击,恢复出所有密钥的数据复杂度和时间复杂度分别为297和2124.这个结果是目前针对Camellia算法的截断差分攻击中最好的.%Based on 9-round truncated differential distinguisher presented by Makoto Sugita on ASIACRYPT2001,this paper proposed a new 10-round truncated differential distinguisher of Camellia block cipher.Moreover,by using this distinguisher and the early abort technique in process of key recovery,it attacked 12-round Camellia-128 with data complexity of 297 and time complexity of 2124.The result is the best truncated differential analysis result on reduced-round Camellia so far.
展开▼