• Àüü
  • ÀüÀÚ/Àü±â
  • Åë½Å
  • ÄÄÇ»ÅÍ
´Ý±â

»çÀÌÆ®¸Ê

Loading..

Please wait....

¿µ¹® ³í¹®Áö

Ȩ Ȩ > ¿¬±¸¹®Çå > ¿µ¹® ³í¹®Áö > TIIS (Çѱ¹ÀÎÅͳÝÁ¤º¸ÇÐȸ)

TIIS (Çѱ¹ÀÎÅͳÝÁ¤º¸ÇÐȸ)

Current Result Document : 9 / 99 ÀÌÀü°Ç ÀÌÀü°Ç   ´ÙÀ½°Ç ´ÙÀ½°Ç

ÇѱÛÁ¦¸ñ(Korean Title) Research on the Security Level of µ2 against Impossible Differential cryptanalysis
¿µ¹®Á¦¸ñ(English Title) Research on the Security Level of µ2 against Impossible Differential cryptanalysis
ÀúÀÚ(Author) Kai Zhang   Xuejia Lai1   Jie Guan   Bin Hu  
¿ø¹®¼ö·Ïó(Citation) VOL 16 NO. 03 PP. 0972 ~ 0985 (2022. 03)
Çѱ۳»¿ë
(Korean Abstract)
¿µ¹®³»¿ë
(English Abstract)
In the year 2020, a new lightweight block cipher µ2 is proposed. It has both good software and hardware performance, and it is especially suitable for constrained resource environment. However, the security evaluation on µ2 against impossible differential cryptanalysis seems missing from the specification. To fill this gap, an impossible differential cryptanalysis on µ2 is proposed. In this paper, firstly, some cryptographic properties on µ2 are proposed. Then several longest 7-round impossible differential distinguishers are constructed. Finally, an impossible differential cryptanalysis on µ2 reduced to 10 rounds is proposed based on the constructed distinguishers. The time complexity for the attack is about 269.63 10-round µ2 encryptions, the data complexity is O(248), and the memory complexity is 263.57 Bytes. The reported result indicates that µ2 reduced to 10 rounds can¡¯t resist against impossible differential cryptanalysis.
Å°¿öµå(Keyword) Cryptanalysis   Lightweight Block Cipher   µ2 Block Cipher   Impossible Differential cryptanalysis  
ÆÄÀÏ÷ºÎ PDF ´Ù¿î·Îµå