首页 | 本学科首页   官方微博 | 高级检索  
     

低轮FOX分组密码的碰撞-积分攻击
引用本文:吴文玲,卫宏儒. 低轮FOX分组密码的碰撞-积分攻击[J]. 电子学报, 2005, 33(7): 1307-1310
作者姓名:吴文玲  卫宏儒
作者单位:中国科学院软件研究所信息安全国家重点实验室,北京,100080;北京科技大学应用科学学院,北京,100083
基金项目:国家自然科学基金,国家重点基础研究发展计划(973计划),国家高技术研究发展计划(863计划)
摘    要:FOX是最近推出的系列分组密码,它的设计思想基于可证安全的研究结果,且在各种平台上的性能优良.本文利用碰撞攻击和积分攻击相结合的技术分析FOX的安全性,结果显示碰撞-积分攻击比积分攻击有效,攻击对4轮FOX64的计算复杂度是245.4,对5轮FOX64的计算复杂度是2109.4,对6轮FOX64的计算复杂度是2173.4,对7轮FOX64的计算复杂度是2237.4,且攻击所需数据量均为29;也就是说4轮FOX64/64、5轮FOX64/128、6轮FOX64/192和7轮FOX64/256对本文攻击是不免疫的.

关 键 词:分组密码  攻击  密钥  计算复杂度  数据复杂度
文章编号:0372-2112(2005)07-1307-04
收稿时间:2004-09-10
修稿时间:2004-09-102005-01-26

Collision-Integral Attack of Reduced-Round FOX
WU Wen-ling,WEI Hong-ru. Collision-Integral Attack of Reduced-Round FOX[J]. Acta Electronica Sinica, 2005, 33(7): 1307-1310
Authors:WU Wen-ling  WEI Hong-ru
Affiliation:1. State Key Laboratory of Information Security,Institute of Software,Chinese Academy of Sciences,Beijing 100080,China;2. School of Applied Science,University of Science and Technology Beijing,Beijing100083,China
Abstract:FOX are a family of block ciphers presented recently,which are based upon some results on proven security and have high performances on various platforms.In this paper,we construct some distinguishers between 3-round FOX and a random permutation of the blocks space.By using collision-searching techniques and integral attack,the distinguishers are used to attack on 4,5,6 and 7 rounds of FOX64.The four subkeys of 4-round FOX64 can be recovered with 2 9 chosen plaintexts and 2 45.4 encryptions.The five subkeys of 5-round FOX64 can be recovered with 2 9 chosen plaintexts and 2 109.4 encryptions.The six subkeys of 6-round FOX64 can be recovered with 2 9 chosen plaintexts and 2 173.4 encryptions.The seven subkeys of 7-round FOX64 can be recovered with 2 9 chosen plaintexts and 2 237.4 encryptions.Therefore,4-round FOX64/64,5-round FOX64/128,6-round FOX64/192 and 7-round FOX64/256 are not immune to Collision-Integral attack.
Keywords:block cipher  attack  key  data complexity  time complexity
本文献已被 CNKI 维普 万方数据 等数据库收录!
点击此处可从《电子学报》浏览原始摘要信息
点击此处可从《电子学报》下载免费的PDF全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号