Message Authentication Codes and Differential Attack (Special Section on Cryptography and Information Security)
スポンサーリンク
概要
- 論文の詳細を見る
We discuss the security of Message Authentication Code (MAC) schemes from the viewpoint of differential attack, and propose an attack that is effective against DES-MAC and FEAL-MAC. The attack derives the secret authentication key in the chosen plaintext scenario. For example, DES (8-round)-MAC can be broken with 2^<34> pairs of plaintext, while FEAL8-MAC can be broken with 2^<22> pairs. The proposed attack is applicable to any MAC scheme, even if the 32-bits are randomly selected from among the 64-bits of ciphertext generated by a cryptosystem vulnerable to differential attack in the chosen plaintext scenario.
- 1994-01-25
著者
-
Matsui Mitsuru
Computer & Information Systems Laboratory, Mitsubishi Electric Corporation
-
Ohta Kazuo
NTT Network Information Systems Laboratories
関連論文
- On Applicability of Linear Cryptanalysis to DES-like Cryptosystems : LOKI89, LOKI91 and s^2 DES
- New Proposal and Comparison of Closure Tests : More Efficient than the CRYPTO'92 Test for DES (Special Section on Cryptography and Information Security)
- Message Authentication Codes and Differential Attack (Special Section on Cryptography and Information Security)
- Interactive Bi-proof Systems and Undeniable Signature Schemes
- A New Cryptanalytic Method for FEAL Cipher (Special Section on Cryptography and Information Security)