DocumentCode
3435495
Title
A Note on Distinguishing Attacks
Author
Englund, Håkan ; Hell, Martin ; Johansson, Thomas
Author_Institution
Lund Univ., Lund
fYear
2007
fDate
1-6 July 2007
Firstpage
1
Lastpage
4
Abstract
A new distinguishing attack scenario for stream ciphers, allowing a resynchronization collision attack, is presented. The attack can succeed if the part of the state that depends on both the key and the IV is smaller than twice the key size. It is shown that the attack is applicable to block ciphers in OFB mode. For OFB mode, the attack is more powerful than the previously known generic distinguishing attack since it will directly recover a part of the plaintext while having the same asymptotic complexity as the generic distinguishing attack. The attack is also demonstrated on the eSTREAM candidate LEX. LEX is not vulnerable to any of the previously known generic distinguishing attack but is vulnerable to the new attack. It is shown that if approximately 265.7 resynchro-nizations using LEX are performed for the same key, some plaintext might be recovered.
Keywords
cryptography; synchronisation; LEX; OFB mode; distinguishing attacks; eSTREAM; resynchronization collision attack; stream ciphers; Counting circuits; Cryptography; Information technology; Output feedback; Portfolios; Random sequences; Security;
fLanguage
English
Publisher
ieee
Conference_Titel
Information Theory for Wireless Networks, 2007 IEEE Information Theory Workshop on
Conference_Location
Solstrand
Print_ISBN
978-1-4244-1200-6
Electronic_ISBN
978-1-4244-1200-6
Type
conf
DOI
10.1109/ITWITWN.2007.4318038
Filename
4318038
Link To Document