电子与信息学报
電子與信息學報
전자여신식학보
JOURNAL OF ELECTRONICS & INFORMATION TECHNOLOGY
2014年
6期
1520-1524
,共5页
分组密码%密码分析%Eagle-128%相关密钥-矩形攻击
分組密碼%密碼分析%Eagle-128%相關密鑰-矩形攻擊
분조밀마%밀마분석%Eagle-128%상관밀약-구형공격
Block cipher%Cryptanalysis%Eagle-128%Related-key rectangle attack
该文利用高次DDO(Data Dependent Operations)结构的差分重量平衡性和SPN结构的高概率差分对构造了Eagle-128分组密码算法的两条5轮相关密钥-差分特征,通过连接两条5轮特征构造了完全轮相关密钥-矩形区分器,并对算法进行了相关密钥-矩形攻击,恢复出了Eagle-128算法的64 bit密钥。攻击所需的数据复杂度为281.5个相关密钥-选择明文,计算复杂度为2106.7次Eagle-128算法加密,存储复杂度为250 Byte存储空间,成功率约为0.954。分析结果表明,Eagle-128算法在相关密钥-矩形攻击条件下的有效密钥长度为192 bit。
該文利用高次DDO(Data Dependent Operations)結構的差分重量平衡性和SPN結構的高概率差分對構造瞭Eagle-128分組密碼算法的兩條5輪相關密鑰-差分特徵,通過連接兩條5輪特徵構造瞭完全輪相關密鑰-矩形區分器,併對算法進行瞭相關密鑰-矩形攻擊,恢複齣瞭Eagle-128算法的64 bit密鑰。攻擊所需的數據複雜度為281.5箇相關密鑰-選擇明文,計算複雜度為2106.7次Eagle-128算法加密,存儲複雜度為250 Byte存儲空間,成功率約為0.954。分析結果錶明,Eagle-128算法在相關密鑰-矩形攻擊條件下的有效密鑰長度為192 bit。
해문이용고차DDO(Data Dependent Operations)결구적차분중량평형성화SPN결구적고개솔차분대구조료Eagle-128분조밀마산법적량조5륜상관밀약-차분특정,통과련접량조5륜특정구조료완전륜상관밀약-구형구분기,병대산법진행료상관밀약-구형공격,회복출료Eagle-128산법적64 bit밀약。공격소수적수거복잡도위281.5개상관밀약-선택명문,계산복잡도위2106.7차Eagle-128산법가밀,존저복잡도위250 Byte존저공간,성공솔약위0.954。분석결과표명,Eagle-128산법재상관밀약-구형공격조건하적유효밀약장도위192 bit。
By utilizing the balanceable difference weight of high order Data Dependent Operations (DDO) and the high probability differentials of SPN structures, two 5-round related-key differentials of Eagle-128 are constructed. A full round related-key rectangle distinguisher of Eagle-128 is constructed by connecting two 5-round related-key differentials, and a related-key rectangle attack is proposed on the cipher to recover 64 bit of the master key. The corresponding data complexity is about 281.5 related-key chosen-plain-text, the computation complexity is about 2106.7 encryptions of the cipher, and the storage complexity is about 250 Byte of storage space. The success rate of the attack is about 0.954. The analysis results show that the practical length of Eagle-128’s master key is 192 bit.