Title :
On the Weak State in GGHN-like Ciphers
Author :
Kircanski, Aleksandar ; Youssef, Amr M.
Author_Institution :
Dept. of Comput. Sci. & Software Eng., Concordia Univ., Montreal, QC, Canada
Abstract :
RC4 is a stream cipher that makes use of aninternal state table, S, which represents a permutation over Z28 . GGHN is a relatively more efficient stream cipher whose design is inspired from RC4 but whose S table, however, does not represent a permutation over Z2m. In this paper, we point out one challenging aspect of the latter design principle. In particular, we assess GGHN-like algorithms with respect to weak states, in which all internal state words and output elements are even. Once GGHN is absorbed in a weak state, the least significant bit of the plaintext words will be revealed only by looking at the ciphertext. By modelling the algorithm by a Markov chain and calculating chain´s absorption time, we show that the average number of steps required by these algorithms to enter this weak state can be lower than expected at first glance and hence caution should be exercised when estimating this number.
Keywords :
Markov processes; cryptography; GGHN-like ciphers; Markov chain; RC4; Z28; aninternal state table; chain absorption time calculation; ciphertext; plaintext words; stream cipher; weak state; Absorption; Generators; Markov processes; Radiation detectors; Software; Cryptography; GGHNlike ciphers; Markov chains; RC4; stream ciphers;
Conference_Titel :
Availability, Reliability and Security (ARES), 2012 Seventh International Conference on
Conference_Location :
Prague
Print_ISBN :
978-1-4673-2244-7
DOI :
10.1109/ARES.2012.32