From Distinguishers to Key Recovery: Improved Related-Key Attacks on Even-Mansour

Abstract : We show that a distinguishing attack in the related key model on an Even-Mansour block cipher can readily be converted into an extremely efficient key recovery attack. Concerned ciphers include in particular all iterated Even-Mansour schemes with independent keys. We apply this observation to the Caesar candidate Prøst-OTR and are able to recover the whole key with a number of requests linear in its size. This improves on recent forgery attacks in a similar setting.
Type de document :
Communication dans un congrès
Information Security Conference 2015, Sep 2015, Trondheim, Norway. Springer Verlag, 2015, Information Security. 〈http://isc2015.item.ntnu.no/〉. 〈10.1007/978-3-319-23318-5_10〉
Liste complète des métadonnées

https://hal.inria.fr/hal-01245365
Contributeur : Pierre Karpman <>
Soumis le : jeudi 17 décembre 2015 - 10:01:56
Dernière modification le : jeudi 10 mai 2018 - 02:06:38

Identifiants

Citation

Pierre Karpman. From Distinguishers to Key Recovery: Improved Related-Key Attacks on Even-Mansour. Information Security Conference 2015, Sep 2015, Trondheim, Norway. Springer Verlag, 2015, Information Security. 〈http://isc2015.item.ntnu.no/〉. 〈10.1007/978-3-319-23318-5_10〉. 〈hal-01245365〉

Partager

Métriques

Consultations de la notice

171