1. 中国科学院软件研究所信息安全国家重点实验室,北京,100080
2. 北京科技大学应用科学学院,北京,100083
3. 中国科学院软件研究所信息安全国家重点实验室北京,100080
4. 北京科技大学应用科学学院北京,100083
纸质出版:2005
移动端阅览
吴文玲, 卫宏儒. 低轮FOX分组密码的碰撞-积分攻击[J]. 电子学报, 2005,33(7):1307-1310.
WU Wen-ling, WEI Hong-ru. Collision-Integral Attack of Reduced-Round FOX[J]. Acta Electronica Sinica, 2005, 33(7): 1307-1310.
FOX是最近推出的系列分组密码
它的设计思想基于可证安全的研究结果
且在各种平台上的性能优良.本文利用碰撞攻击和积分攻击相结合的技术分析FOX的安全性
结果显示碰撞-积分攻击比积分攻击有效
攻击对4轮FOX64的计算复杂度是2
45.4
对5轮FOX64的计算复杂度是2
109.4
对6轮FOX64的计算复杂度是2
173.4
对7轮FOX64的计算复杂度是2
237.4
且攻击所需数据量均为2
9
;也就是说4轮FOX64/64、5轮FOX64/128、6轮FOX64/192和7轮FOX64/256对本文攻击是不免疫的.
FOX are a family of block ciphers presented recently
which are based upon some results on proven security and have high performances on various platforms.In this paper
we construct some distinguishers between 3-round FOX and a random permutation of the blocks space.By using collision-searching techniques and integral attack
the distinguishers are used to attack on 4
5
6 and 7 rounds of FOX64.The four subkeys of 4-round FOX64 can be recovered with 2
9
chosen plaintexts and 2
45.4
encryptions.The five subkeys of 5-round FOX64 can be recovered with 2
9
chosen plaintexts and 2
109.4
encryptions.The six subkeys of 6-round FOX64 can be recovered with 2
9
chosen plaintexts and 2
173.4
encryptions.The seven subkeys of 7-round FOX64 can be recovered with 2
9
chosen plaintexts and 2
237.4
encryptions.Therefore
4-round FOX64/64
5-round FOX64/128
6-round FOX64/192 and 7-round FOX64/256 are not immune to Collision-Integral attack.
0
浏览量
1079
下载量
11
CSCD
关联资源
相关文章
相关作者
相关机构
京公网安备11010802024621