电子科技大学学报
電子科技大學學報
전자과기대학학보
JOURNAL OF UNIVERSITY OF ELECTRONIC SCIENCE AND TECHNOLOGY OF CHINA
2013年
2期
219-224
,共6页
陈杰%胡予濮%张跃宇%董晓丽
陳傑%鬍予濮%張躍宇%董曉麗
진걸%호여복%장약우%동효려
高级加密标准%分组密码%差分攻击%相关密钥攻击%Square攻击
高級加密標準%分組密碼%差分攻擊%相關密鑰攻擊%Square攻擊
고급가밀표준%분조밀마%차분공격%상관밀약공격%Square공격
advanced encryption standard (AES)%block cipher%differential attack%related-key attack%Square attack
利用AES-192子密钥间的内在关系,完全确定了在特定相关密钥差分下的前8轮子密钥的所有确切的差分值,结合Asiacrypt’2010中的密钥桥技术可以确定部分初始密钥,从而发现AES-192的密钥编排方案存在一定缺陷.利用该缺陷,给出了一个相关密钥Square攻击7轮和8轮AES-192的新方法.新方法攻击8轮AES-192仅需244.5选择明文,244.5存储,以及2183.5的8轮AES-192加密.结合部分和技术进一步降低了攻击的计算复杂度.
利用AES-192子密鑰間的內在關繫,完全確定瞭在特定相關密鑰差分下的前8輪子密鑰的所有確切的差分值,結閤Asiacrypt’2010中的密鑰橋技術可以確定部分初始密鑰,從而髮現AES-192的密鑰編排方案存在一定缺陷.利用該缺陷,給齣瞭一箇相關密鑰Square攻擊7輪和8輪AES-192的新方法.新方法攻擊8輪AES-192僅需244.5選擇明文,244.5存儲,以及2183.5的8輪AES-192加密.結閤部分和技術進一步降低瞭攻擊的計算複雜度.
이용AES-192자밀약간적내재관계,완전학정료재특정상관밀약차분하적전8륜자밀약적소유학절적차분치,결합Asiacrypt’2010중적밀약교기술가이학정부분초시밀약,종이발현AES-192적밀약편배방안존재일정결함.이용해결함,급출료일개상관밀약Square공격7륜화8륜AES-192적신방법.신방법공격8륜AES-192부수244.5선택명문,244.5존저,이급2183.5적8륜AES-192가밀.결합부분화기술진일보강저료공격적계산복잡도.
@@@@This paper investigates weaknesses in key schedule by exploiting appropriate related-key differences of AES-192. The exact subkey differences in the first 8 round can be confirmed, moreover, a part of secrete key can be deduced by the key bridging technique in Asiacrypt’2010. This paper presents a new method for related-key Square attack on 7-round and 8-round AES-192 with weaknesses in key schedule. This attack on the 8-round AES-192 by the balance of Square attack requires about 244.5 chosen plaintexts, 244.5 memory, and 2183.5 8-round AES-192 encryptions. Furthermore, this new attack combined with partial sum technique requires about 244.2 chosen plaintexts, 244.2 memory, and 2169.2 8-round AES-192 encryptions.