首页 | 本学科首页   官方微博 | 高级检索  
     

5轮SAFER++的非线性密码分析
引用本文:吴文玲,马恒太,唐柳英,卿斯汉. 5轮SAFER++的非线性密码分析[J]. 电子学报, 2003, 31(7): 961-965
作者姓名:吴文玲  马恒太  唐柳英  卿斯汉
作者单位:中国科学院信息安全技术工程研究中心,北京,100080;中国科学院软件研究所信息安全国家重点实验室,北京,100080
基金项目:国家自然科学基金 (No 60 1 0 30 2 3 ,60 0 830 0 7),973项目 (No G1 9990 3580 2 )
摘    要:SAFER 是进入NESSIE第二轮评估的 7个算法之一 .设计者称 2 .5轮SAFER 可以抵抗线性密码分析 .JNakahara指出对某些密钥 ,改进型线性密码分析攻击 4轮SAFER 比强力攻击有效 .本文对SAFER 的基础模块深入分析和测试后 ,对 5轮SAFER 进行非线性密码分析 ;攻击对 2 2 52 个 2 5 6比特长度的密钥有效 ,攻击的数据复杂度为 2 12 0 .虽然此攻击对SAFER 的实际安全构不成威胁 ,但是显示非线性密码分析攻击 5轮SAFER 比强力攻击有效 ,也说明了非线性密码分析攻击 5轮SAFER 比线性密码分析和JNakahara等的改进型线性密码分析有效

关 键 词:线性密码分析  非线性密码分析  线性逼近  非线性逼近  SAFER
文章编号:0372-2112(2003)07-0961-05

Nonlinear Cryptanalysis of 5-Round SAFER++
WU Wen-ling,MA Heng-tai,TANG Liu-ying,QING Si-han. Nonlinear Cryptanalysis of 5-Round SAFER++[J]. Acta Electronica Sinica, 2003, 31(7): 961-965
Authors:WU Wen-ling  MA Heng-tai  TANG Liu-ying  QING Si-han
Abstract:SAFER has been selected for further evaluation in NESSIE Second Phase.The designers claim that 2.5 rounds SAFER is secure against linear cryptanalysis.J.Nakahara Jr and B.Preneel report that an improved linear cryptanalysis reaches up to 4 rounds SAFER for weak key classes of 256-bit keys.Based on the analysis and test of basic modules,nonlinear cryptanalysis on 5 rounds SAFER is given,data complexity is 2 120 and computation complexity is 2 250.This is not a real threat to the security of the SAFER ,but it is shown that 5 rounds SAFER is not immune to nonlinear cryptanalysis,and nonlinear cryptanalysis is more effective to 5 rounds SAFER than linear cryptanalysis and improved linear cryptanalysis of J.Nakahara and B.Preneel.
Keywords:linear cryptanalysis  nonlinear cryptanalysis  linear approximation  nonlinear approximation  SAFER   
本文献已被 CNKI 维普 万方数据 等数据库收录!
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号