Faster Chosen-Key Distinguishers on Reduced-Round AES

Abstract : In this paper, we study the AES block cipher in the chosen-key setting. The adversary's goal of this security model is to find triplets (m, m , k) satisfying some properties more efficiently for the AES scheme than generic attacks. It is a restriction of the classical chosen-key model, since as it has been defined originally, differences in the keys are possible. This model is related to the known-key setting, where the adversary receives a key k, and tries to find a pair of messages (m, m) that has some property more efficiently than generic attacks. Both models have been called open-key model in the literature and are interesting for the security of AES-based hash functions. Here, we show that in the chosen-key setting, attacking seven rounds (resp. eight rounds) of AES-128 can be done in time and memory 2 8 (resp. 2 24) while the generic attack would require 2 64 computations as a variant of the birthday paradox can be used to predict the generic complexity. We have checked our results experimentally and we extend them to distinguisers of AES-256.
Type de document :
Communication dans un congrès
Progress in Cryptology - 2012, Dec 2012, Kolkata, India. Springer, LNCS 7668, pp.19, 2012, INDOCRYPT 2012. 〈10.1007/978-3-642-34931-7_14〉
Liste complète des métadonnées

Littérature citée [16 références]  Voir  Masquer  Télécharger

https://hal.inria.fr/hal-01094335
Contributeur : Pierre-Alain Fouque <>
Soumis le : vendredi 12 décembre 2014 - 10:26:42
Dernière modification le : vendredi 25 mai 2018 - 12:02:05
Document(s) archivé(s) le : vendredi 13 mars 2015 - 10:31:07

Fichier

indocrypt2012.pdf
Fichiers produits par l'(les) auteur(s)

Identifiants

Citation

Patrick Derbez, Pierre-Alain Fouque, Jérémy Jean. Faster Chosen-Key Distinguishers on Reduced-Round AES. Progress in Cryptology - 2012, Dec 2012, Kolkata, India. Springer, LNCS 7668, pp.19, 2012, INDOCRYPT 2012. 〈10.1007/978-3-642-34931-7_14〉. 〈hal-01094335〉

Partager

Métriques

Consultations de la notice

255

Téléchargements de fichiers

234