Distinguishing and Key-recovery Attacks against Wheesht

Abstract : Wheesht is one of the candidates to the CAESAR competition. In this note we present several attacks on Wheesht, showing that it is far from the advertised security level of 256 bits. In particular we describe a distinguishing attack with $2^{70.3}$ known plaintext words for any number of rounds of Wheesht, and a key-recovery attack (recovering the encryption key) for versions of Wheesht with a single finalization round with very little data and time complexity $2^{192}$.
Type de document :
Pré-publication, Document de travail
2014
Liste complète des métadonnées

Littérature citée [3 références]  Voir  Masquer  Télécharger

https://hal.inria.fr/hal-00966346
Contributeur : Anne Canteaut <>
Soumis le : mercredi 26 mars 2014 - 15:51:35
Dernière modification le : vendredi 25 mai 2018 - 12:02:05
Document(s) archivé(s) le : lundi 10 avril 2017 - 03:55:42

Fichier

wheesht.pdf
Fichiers produits par l'(les) auteur(s)

Identifiants

  • HAL Id : hal-00966346, version 2

Collections

Citation

Anne Canteaut, Gaëtan Leurent. Distinguishing and Key-recovery Attacks against Wheesht. 2014. 〈hal-00966346v2〉

Partager

Métriques

Consultations de la notice

387

Téléchargements de fichiers

111