Related Key Chosen IV Attack on Grain-128a Stream Cipher

被引:16
|
作者
Ding, Lin [1 ]
Guan, Jie [1 ]
机构
[1] Informat Sci & Technol Inst, Zhengzhou 450000, Peoples R China
基金
中国国家自然科学基金;
关键词
Cryptanalysis; grain-128a; related key chosen IV attack; stream cipher; DIFFERENTIAL CRYPTANALYSIS; PY-FAMILY;
D O I
10.1109/TIFS.2013.2256419
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
The well-known stream cipher Grain-128 is a variant version of Grain v1 with 128-bit secret key. Grain v1 is a stream cipher which has successfully been chosen as one of seven finalists by European eSTREAM project. Yet Grain-128 is vulnerable against some recently introduced attacks. A new version of Grain-128 with authentication, named Grain-128a, is proposed by Agren, Hell, Johansson, and Meier. The designers claimed that Grain-128a is strengthened against all known attacks and observations on the original Grain-128. So far there exists no attack on Grain-128a except a differential fault attack by Banik, Maitra, and Sarkar. In this paper, we give some observations on Grain-128a, and then propose a related key chosen IV attack on Grain-128a based on these observations. Our attack can recover the 128-bit secret key of Grain-128a with a computational complexity of 2(96.322), requiring 2(96) chosen IVs and 2(103.613) keystream bits. The success probability of our attack is 0.632. This related key attack is "minimal" in the sense that it only requires two related keys. The result shows that our attack is much better than an exhaustive key search in the related key setting.
引用
收藏
页码:803 / 809
页数:7
相关论文
共 50 条
  • [21] Key recovery attack on stream cipher Grain v1 and its improvement
    Yang W.
    Hu Y.
    Gao J.
    Xinan Jiaotong Daxue Xuebao/Journal of Southwest Jiaotong University, 2010, 45 (05): : 745 - 750
  • [22] Improved Key Recovery Attack on the BEAN Stream Cipher
    Wang, Hui
    Hell, Martin
    Johansson, Thomas
    Agren, Martin
    IEICE TRANSACTIONS ON FUNDAMENTALS OF ELECTRONICS COMMUNICATIONS AND COMPUTER SCIENCES, 2013, E96A (06) : 1437 - 1444
  • [23] A new distinguishing and key recovery attack on NGG stream cipher
    Aleksandar Kircanski
    Rabeah Al-Zaidy
    Amr M. Youssef
    Cryptography and Communications, 2009, 1 : 269 - 282
  • [24] Related key chosen IV attacks on Decim v2 and Decim-128
    Lin, Ding
    Jie, Guan
    MATHEMATICAL AND COMPUTER MODELLING, 2012, 55 (1-2) : 123 - 133
  • [25] A new distinguishing and key recovery attack on NGG stream cipher
    Kircanski, Aleksandar
    Al-Zaidy, Rabeah
    Youssef, Amr M.
    CRYPTOGRAPHY AND COMMUNICATIONS-DISCRETE-STRUCTURES BOOLEAN FUNCTIONS AND SEQUENCES, 2009, 1 (02): : 269 - 282
  • [26] Improved Related-Cipher Attack on Salsa20 Stream Cipher
    Ding, Lin
    IEEE ACCESS, 2019, 7 : 30197 - 30202
  • [27] Design of New QCA LFSR and NLFSR for Grain-128 Stream Cipher
    Sabbaghi-Nadooshan, Reza
    Shahosseini, Zahra
    Rezaeipour, Davood
    JOURNAL OF CIRCUITS SYSTEMS AND COMPUTERS, 2016, 25 (02)
  • [28] Near Collision Attack on the Grain v1 Stream Cipher
    Zhang, Bin
    Li, Zhenqi
    Feng, Dengguo
    Lin, Dongdai
    FAST SOFTWARE ENCRYPTION (FSE 2013), 2014, 8424 : 518 - 538
  • [29] A Chosen-IV Key Recovery Attack on Py and Pypy
    Isobe, Takanori
    Ohigashi, Toshihiro
    Kuwakado, Hidenori
    Morii, Masakatu
    IEICE TRANSACTIONS ON INFORMATION AND SYSTEMS, 2009, E92D (01) : 32 - 40
  • [30] A New Practical Key Recovery Attack on the Stream Cipher RC4 under Related-Key Model
    Chen, Jiageng
    Miyaji, Atsuko
    INFORMATION SECURITY AND CRYPTOLOGY, 2011, 6584 : 62 - 76