Improved Conditional Differential Attacks on Round-Reduced Grain v1.

Autor: Jun-Zhi Li, Jie Guan
Předmět:
Zdroj: KSII Transactions on Internet & Information Systems; Sep2018, Vol. 12 Issue 9, p4548-4559, 12p
Abstrakt: Conditional differential attack against NFSR-based cryptosystems proposed by Knellwolf et al. in Asiacrypt 2010 has been widely used for analyzing round-reduced Grain v1. In this paper, we present improved conditional differential attacks on Grain v1 based on a factorization simplification method, which makes it possible to obtain the expressions of internal states in more rounds and analyze the expressions more precisely. Following a condition-imposing strategy that saves more IV bits, Sarkar's distinguishing attack on Grain v1 of 106 rounds is improved to a key recovery attack. Moreover, we show new distinguishing attack and key recovery attack on Grain v1 of 107 rounds with lower complexity O(234) and appreciable theoretical success probability 93.7%. Most importantly, our attacks can practically recover key expressions with higher success probability than theoretical results. [ABSTRACT FROM AUTHOR]
Databáze: Supplemental Index