首页 | 本学科首页   官方微博 | 高级检索  
     

ITUbee密码代数旁路攻击
引用本文:李浪,杜国权.ITUbee密码代数旁路攻击[J].计算机科学,2016,43(2):169-174.
作者姓名:李浪  杜国权
作者单位:衡阳师范学院计算机科学与技术学院 衡阳421002;湖南大学信息科学与工程学院 长沙410082,衡阳师范学院计算机科学与技术学院 衡阳421002
基金项目:本文受国家自然科学基金资助
摘    要:ITUbee是在2013年第二届轻量级加密安全与隐私国际研讨会上提出的轻量级密码算法,对ITUbee密码进行安全分析有着积极意义。研究了ITUbee的代数旁路攻击方法,首先构建ITUbee密码S盒的等价代数方程组;由于构造的方程组不易解,通过采集ITUbee算法的加密功耗泄露,对加密中间状态字节的汉明重进行推断,并将其转化为与密码算法联立的布尔方程组,再利用cryptominisat解析器来求解密钥。实验结果表明,按此思路构造的ITUbee攻击方法所需样本少;在已知明文和未知明密文的场景下,1次ITUbee加密、部分轮汉明重泄露的情况下可成功恢复全部初始密钥。

关 键 词:ITUbee  代数旁路攻击  汉明重  Cryptominisat
收稿时间:2/1/2015 12:00:00 AM
修稿时间:2015/4/18 0:00:00

Algebraic Side-channel Attacks Method of ITUbee
LI Lang and DU Guo-quan.Algebraic Side-channel Attacks Method of ITUbee[J].Computer Science,2016,43(2):169-174.
Authors:LI Lang and DU Guo-quan
Affiliation:College of Computer Science and Technology,Hengyang Normal University,Hengyang 421002,China;College of Computer Science and Electronic Engineering,Hunan University,Changsha 410082,China and College of Computer Science and Technology,Hengyang Normal University,Hengyang 421002,China
Abstract:ITUbee was proposed in the second lightweight cryptography for security and privacy 2013.It has great significance to do security analysis about ITUbee.The algebraic side-channel attacks methods of ITUbee were researched.First,we constructed the equivalent-algebraic equations of ITUbee S-box.But,it is difficult to work out the structured equations set.The leakage of cryptographic power consumption of ITUbee algorithm was collected.The Hamming weight of the encryption middle status byte was inferred.Then,the simultaneous Boolean equations set with the cipher algorithm was conversed.At last,we used the cryptominisat to solve the key.Experiment results show that it only needs less samples to gain the successful attack.The initial keys can be derived via analyzing the part HW (Hamming weight) leakages of the first round in the scene of the known-plaintext and the unknown ciphertext.
Keywords:ITUbee  Algebraic side-channel attack  Hamming weight  Cryptominisat
点击此处可从《计算机科学》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号