首页 | 本学科首页   官方微博 | 高级检索  
     

约减轮数分组密码LEA的差分分析
引用本文:李艳俊, 李寅霜, 刘健, 王克. 约减轮数分组密码LEA的差分分析[J]. 电子与信息学报, 2023, 45(10): 3737-3744. doi: 10.11999/JEIT221282
作者姓名:李艳俊  李寅霜  刘健  王克
作者单位:1.中国电子科技集团公司第十五研究所信息产业信息安全测评中心 北京 100083;;2.北京电子科技学院 北京 100070
基金项目:北京高校“高精尖”学科建设项目(20210101Z0401)
摘    要:LEA算法是面向软件的轻量级加密算法,在2019年成为 ISO/IEC 国际标准轻量级加密算法,具有快速加密、占用运算资源少等优点。该文基于多条输入输出差分相同的路径计算了差分概率,首次对LEA-128进行了13轮和14轮的密钥恢复攻击;采用提前抛弃技术,分别在12轮和13轮差分特征后面添加了1轮,恢复了96 bit密钥;其中13轮的密钥恢复攻击数据复杂度为298个明文,时间复杂度为286.7次13轮LEA-128解密;14轮的密钥恢复攻击数据复杂度为2118个明文,时间复杂度为2110.6次14轮LEA-128解密。

关 键 词:轻量级分组密码   ARX   差分分析   密钥恢复攻击
收稿时间:2022-10-10
修稿时间:2023-04-19

Differential Analysis of Reduced Rounds Block Cipher LEA
LI Yanjun, LI Yinshuang, LIU Jian, WANG Ke. Differential Analysis of Reduced Rounds Block Cipher LEA[J]. Journal of Electronics & Information Technology, 2023, 45(10): 3737-3744. doi: 10.11999/JEIT221282
Authors:LI Yanjun  LI Yinshuang  LIU Jian  WANG Ke
Affiliation:1. Information Industry Information Security Evaluation Center, The 15th Research Institute of China Electronics Technology Group Corporation, Beijing 100083, China;;2. Beijing Institute of Electronic Science and technology, Beijing 100070, China
Abstract:The LEA algorithm is a software-oriented lightweight encryption algorithm, which became the ISO/IEC international standard lightweight encryption algorithm in 2019. It has the advantages of fast encryption and less computing resources. The differential probability is calculated based on multiple paths with the same input-output difference, 13 and 14 rounds of key recovery attacks of LEA-128 are given for the first time. Using the early abort technology, one round is added after the 12-round and 13-round differential characteristic, and a total of 96 bit keys are recovered. The 13-round key recovery attack has a data complexity of 298 plaintext and a time complexity of 286.7 times of 13 rounds of LEA-128 decryption; the 14-round key recovery attack has a data complexity of 2118 plaintext and a time complexity of 2110.6 times of 14 rounds of LEA-128 decryption.
Keywords:Lightweight block cipher  ARX  Differential analysis  Key recovery attack
点击此处可从《电子与信息学报》浏览原始摘要信息
点击此处可从《电子与信息学报》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号