首页 | 本学科首页   官方微博 | 高级检索  
     

A New Method for Impossible Differential Cryptanalysis of 8-Round Advanced Encryption Standard
引用本文:CHEN Jie HU Yupu WEI Yongzhuang. A New Method for Impossible Differential Cryptanalysis of 8-Round Advanced Encryption Standard[J]. 武汉大学学报:自然科学英文版, 2006, 11(6): 1559-1562. DOI: 10.1007/BF02831820
作者姓名:CHEN Jie HU Yupu WEI Yongzhuang
作者单位:Key Laboratory of Computer Network and Information Security, Ministry of Education, Xidian University, Xi'an 710071, Shaanxi, China
基金项目:Supported by the Foundation of National Laboratory for Modern Communications (51436030105DZ0105)
摘    要:
This paper first presents an impossible differential property for 5-round Advanced Encryption Standard (AES) with high probability. Based on the property and the impossible differential cryptanalytic method for the 5-round AES, a new method is proposed for cryptanalyzing the 8-round AES-192 and AES-256. This attack on the reduced 8-round AES-192 demands 2^121 words of memory, and performs 2^148 8-round AES-192 encryptions. This attack on the reduced 8-round AES-256 demands 2^153 words of memory, and performs 2^180 8-round AES-256 encryptions. Furthermore, both AES-192 and AES-256 require about 2^98 chosen plaintexts for this attack, and have the same probability that is only 2^-3 to fail to recover the secret key.

关 键 词:差分密码分析 加密 密码术 保密通信
文章编号:1007-1202(2006)06-1559-04
收稿时间:2006-05-20

A new method for impossible differential cryptanalysis of 8-round advanced encryption standard
Chen Jie,Hu Yupu,Wei Yongzhuang. A new method for impossible differential cryptanalysis of 8-round advanced encryption standard[J]. Wuhan University Journal of Natural Sciences, 2006, 11(6): 1559-1562. DOI: 10.1007/BF02831820
Authors:Chen Jie  Hu Yupu  Wei Yongzhuang
Affiliation:(1) Kev Laboratory of Computer Network and Information Security, Ministry of Education, Xidian University, 710071 Xi'an, Shaanxi, China
Abstract:
This paper first presents an impossible differential property for 5-round Advanced Encryption Standard (AES) with high probability. Based on the property and the impossible differential cryptanalytic method for the 5-round AES, a new method is proposed for cryptanalyzing the 8-round AES-192 and AES-256. This attack on the reduced 8-round AES-192 demands 2~ 121 words of memory, and performs 2~ 148 8-round AES-192 encryptions. This attack on the reduced 8-round AES-256 demands 2~ 153 words of memory, and performs 2~ 180 8-round AES-256 encryptions. Furthermore, both AES-192 and AES-256 require about 2~ 98 chosen plaintexts for this attack, and have the same probability that is only 2~ -3 to fail to recover the secret key.
Keywords:impossible differential cryptanalysis  cryptanalysis  Advanced Encryption Standard
本文献已被 CNKI 维普 万方数据 SpringerLink 等数据库收录!
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号