Инд. авторы: Pestunov A.I.
Заглавие: Differential cryptanalysis of 24-round CAST-256
Библ. ссылка: Pestunov A.I. Differential cryptanalysis of 24-round CAST-256 // Proceedings - 2008 IEEE Region 8 International Conference on Computational Technologies in Electrical and Electronics Engineering: 2008 IEEE Region 8 International Conference on Computational Technologies in Electrical and Electronics Engineering (JUL 21-25, 2008). - 2008. - Novosibirsk. - P.46-49. - ISBN: 978-1-4244-2133-6.
Внешние системы: DOI: 10.1109/SIBIRCON.2008.4602582; РИНЦ: 15053155; SCOPUS: 2-s2.0-52949143454; WoS: 000260165000010;
Реферат: eng: A 48-round block cipher CAST-256 was a participant of the AES competition. There are two published attacks on this cipher. The first allows to break the cipher, consisted of 16 rounds. Another can break 36 rounds but only for some weak keys, in particulary, a 24-round version of CAST-256 can be broken for a 2(-30) part of all possible keys. An attack described in this paper allows to break 24 rounds of CAST-256, but this attack works for all the keys and not only for the weak ones. Requirements of the attack are: 2(24) chosen plaintexts, 2(29) bytes of memory and 2(244) encryptions. This complexity is less than the complexity of a brute-force attack for 256-bit keys. A success probability of the attack is over 90%.
Ключевые слова: International conferences; Differential cryptanalysis; Cryptography; Block ciphers; Technology; Computational technologies;
Издано: Novosibirsk: , 2008
Физ. характеристика: с.46-49
Конференция: Название: 2008 IEEE Region 8 International Conference on Computational Technologies in Electrical and Electronics Engineering
Аббревиатура: SIBIRCON 2008
Город: Novosibirsk
Страна: Russia
Даты проведения: 2008-07-21 - 2008-07-25