Open-Key Distinguishers for the Internal Block Cipher of Tweaked Lesamnta
スポンサーリンク
概要
- 論文の詳細を見る
This paper shows a known-key distinguisher on the internal block cipher of tweaked Lesamnta reduced to 31 (out of 32) rounds, which is one of the hash functions submitted to the SHA-3 competition. Moreover, the paper presents a distinguisher for full internal block cipher of Lesamnta with stronger assumption. For its tweaked version, all previous cryptanalysis can work no more than 24 rounds. We search for a new integral characteristic for the internal block cipher, and discover a 19-round integral characteristic for forward direction. We then search for an integral characteristic for backward direction, and the characteristics can be combined to full rounds with some assumption. The distinguisher for the internal block cipher of Lesamnta-256 requires 2192 query complexity and negligible memory. This is the best attack on Lesamnta compression function and its internal block cipher after the tweak.
著者
-
SASAKI Yu
NTT Secure Platform Laboratories, NTT Corporation
-
AOKI Kazumaro
NTT Secure Platform Laboratories, NTT Corporation
関連論文
- Open-Key Distinguishers for the Internal Block Cipher of Tweaked Lesamnta
- Boomerang Distinguishers on MD4-Based Hash Functions: First Practical Results on Full 5-Pass HAVAL Compression Function
- Provable Security against Cryptanalysis with Impossible Differentials
- Distinguishers on Double-Branch Compression Function and Applications to Round-Reduced RIPEMD-128 and RIPEMD-160
- A Property for Full CLEFIA-128 Detected by a Middletext Distinguisher under the Known-Key Setting
- Comprehensive Study of Integral Analysis on LBlock
- Provable Security against Cryptanalysis with Impossible Differentials