ISCAS OpenIR
Low data complexity inversion attacks on stream ciphers via truncated compressed preimage sets
Zhong, Xiao (1); Wang, Mingsheng (3); Zhang, Bin (1); Wu, Shengbao (1)
2014
会议名称19th Australasian Conference on Information Security and Privacy, ACISP 2014
页码131-147
会议日期July 7, 2014 - July 9, 2014
会议地点Wollongong, NSW, Australia
收录类别EI
出版地Springer Verlag
ISSN3029743
ISBN9783319083438
部门归属(1) Trusted Computing and Information Assurance Laboratory, Institute of Software, Chinese Academy of Sciences, Beijing, China; (2) Graduate School, Chinese Academy of Sciences, Beijing, China; (3) State Key Laboratory of Information Security, Institute of Information Engineering, Chinese Academy of Sciences, Beijing, China; (4) State Key Laboratory of Computer Science, Institute of Software, Chinese Academy of Sciences, Beijing, China
摘要This paper focuses on the analysis of LFSR-based stream ciphers with low data complexity. We introduce a novel parameter called the k-th truncated compressed preimage set (TCP set), and propose a low data complexity attack to recover the initial LFSR state via the TCP sets. Our method costs very few keystream bits and less time than the brute force under some condition. We apply our method to a 90-stage LFSR-based keystream generator with filter Boolean function which can resist the algebraic attack and inversion attack given by Goli to the greatest extent. It needs only 10-bit keystream to recover the 90-bit initial state, costing less time and data than the algebraic attack. The time complexity is also less than that of the inversion attack. Moreover, we recover the 128-bit initial state of the stream cipher LILI-128 with our method. The data cost is just 9 keystream bits along with a memory cost of O(2 8.5), which is the minimum data cost to theoretically break LILI-128 so far as we know. The time complexity is O(2122.4), better than the brute force. We also define a new security parameter called Tcomp and suggest a design criterion for the LFSR-based stream ciphers. © 2014 Springer International Publishing Switzerland.; This paper focuses on the analysis of LFSR-based stream ciphers with low data complexity. We introduce a novel parameter called the k-th truncated compressed preimage set (TCP set), and propose a low data complexity attack to recover the initial LFSR state via the TCP sets. Our method costs very few keystream bits and less time than the brute force under some condition. We apply our method to a 90-stage LFSR-based keystream generator with filter Boolean function which can resist the algebraic attack and inversion attack given by Goli to the greatest extent. It needs only 10-bit keystream to recover the 90-bit initial state, costing less time and data than the algebraic attack. The time complexity is also less than that of the inversion attack. Moreover, we recover the 128-bit initial state of the stream cipher LILI-128 with our method. The data cost is just 9 keystream bits along with a memory cost of O(2 8.5), which is the minimum data cost to theoretically break LILI-128 so far as we know. The time complexity is O(2122.4), better than the brute force. We also define a new security parameter called Tcomp and suggest a design criterion for the LFSR-based stream ciphers. © 2014 Springer International Publishing Switzerland.
语种英语
内容类型会议论文
URI标识http://ir.iscas.ac.cn/handle/311060/16589
专题中国科学院软件研究所
推荐引用方式
GB/T 7714
Zhong, Xiao ,Wang, Mingsheng ,Zhang, Bin ,et al. Low data complexity inversion attacks on stream ciphers via truncated compressed preimage sets[C]. Springer Verlag,2014:131-147.
条目包含的文件
条目无相关文件。
个性服务
推荐该条目
保存到收藏夹
查看访问统计
导出为Endnote文件
谷歌学术
谷歌学术中相似的文章
[Zhong, Xiao (1)]的文章
[Wang, Mingsheng (3)]的文章
[Zhang, Bin (1)]的文章
百度学术
百度学术中相似的文章
[Zhong, Xiao (1)]的文章
[Wang, Mingsheng (3)]的文章
[Zhang, Bin (1)]的文章
必应学术
必应学术中相似的文章
[Zhong, Xiao (1)]的文章
[Wang, Mingsheng (3)]的文章
[Zhang, Bin (1)]的文章
相关权益政策
暂无数据
收藏/分享
所有评论 (0)
暂无评论
 

除非特别说明,本系统中所有内容都受版权保护,并保留所有权利。