欢迎访问中国科学院大学学报,今天是
论文

6轮ARIA的最优不可能差分分析

  • 张磊 ,
  • 郭建胜
展开
  • 解放军信息工程大学电子技术学院, 郑州 450004

收稿日期: 2010-03-23

  修回日期: 2010-05-28

  网络出版日期: 2011-03-15

Best impossible differential cryptanalysis of 6-round ARIA

  • ZHANG Lei ,
  • GUO Jian-Sheng
Expand
  • Institute of Electronic Technology, PLA Information Engineering University, Zhengzhou 450004, China

Received date: 2010-03-23

  Revised date: 2010-05-28

  Online published: 2011-03-15

摘要

研究了ARIA在不可能差分分析下的安全性.通过对算法扩散层的分析,给出了ARIA中间状态在加密过程的差分传递性质.在此基础上证明了6轮ARIA不存在使得输入输出差分重量小于10的不可能差分路径,同时证明了在输入输出差分重量为10的情况下6轮ARIA只存在2类形式的不可能差分路径.利用构造出的这2类不可能差分路径,从理论上证明了6轮ARIA不可能差分攻击的最优结果为:2120个选择明文和294.5次6轮加密.

本文引用格式

张磊 , 郭建胜 . 6轮ARIA的最优不可能差分分析[J]. 中国科学院大学学报, 2011 , 28(2) : 266 -273 . DOI: 10.7523/j.issn.2095-6134.2011.2.020

Abstract

The security of the block cipher ARIA against impossible differential cryptanalysis is studied. First, we analyze the diffusion layer of ARIA and indicate some differential characters of the intermediate state through the encryption transformation. On the basis of these, we show that there is no 6-round impossible differential with the input-and-output differential weight less than ten and that there are only two kinds of 6-round impossible differential with the input-and-output differential weight of ten. Both kinds of the best impossible differentials can be found and can be used to attack the 6-round ARIA with the best results: the data complexity being 2120 chosen plaintexts and the time complexity being 294.5 encryptions of 6-round ARIA.

参考文献


[1] Daesung K, Jaesung K, Sangwoo P, et al. New block cipher: ARIA //Proceedings of the Information Security and Cryptology, ICISC’03. Springer-Verlag, LNCS 2971, 2003: 432-445.

[2] Wu W L, Zhang L. The state-of-the-art of research on impossible differential cryptanalysis
[J]. Journal of Systems Science and Mathematical Sciences, 2008, 28(8): 971-983(in Chinese). 吴文玲,张蕾. 不可能差分密码分析研究进展
[J].系统科学与数学, 2008, 28(8):971-983.

[3] Kim J, Hong S, Sung J, et al. Impossible differential cryptanalysis for block cipher structures //Proceedings of Indocrypt 2003. Springer-Verlag, LNCS 2904, 2003: 82-96.

[4] Zhang W T, Wu W L, Feng D G.. New results on impossible differential cryptanalysis of reduced AES //Proceeding of ICISC 2007. LNCS 4817, 2007: 239-250.

[5] Tsunoo Y, Tsujihara E, Shigeri M, et al. Impossible differential cryptanalysis of CLEFIA //FSE 2008. Springer-Verlag, LNCS 5086, 2008: 289-302.

[6] Alex B, Christophe D C, Joseph L, et al. Security and performance analysis of ARIA:Version 1.2 . 2003 . http://homes.esat.kuleuven.be/abiryuko/ARIA-COSICreport.pdf.

[7] Wu W L, Zhang W T, Feng D G. Impossible differential cryptanalysis of reduced-round ARIA and Camellia
[J]. Journal of Computer Science and Technology, 2007, 22(3): 449-456.

[8] Peng Z, Ruilin L, Bing S, et al. New impossible differential cryptanalysis of ARIA . . Cryptology ePrint Archive, Report 2008. http://eprint.iacr.org/.

[9] Li S H. Cryptanalysis of two symmetric encryption algorithms ARIA and SALSA20 . Jinan: Institute of Mathematics and System Science, Shandong University, 2008(in Chinese). 李申华. 对称密码算法ARIA和Salsa20的安全性分析 . 济南:山东大学数学与系统科学学院, 2008.

文章导航

/