Padding oracle attacks on CBC-mode encryption with secret and random IVs

被引:0
|
作者
Yau, AKL [1 ]
Paterson, KG [1 ]
Mitchell, CJ [1 ]
机构
[1] Univ London Royal Holloway & Bedford New Coll, Informat Secur Grp, Egham TW20 0EX, Surrey, England
来源
FAST SOFTWARE ENCRYPTION | 2005年 / 3557卷
关键词
padding oracle; CBC-mode; ISO standards; side channel;
D O I
暂无
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
In [8], Paterson and Yau presented padding oracle attacks against a committee draft version of a revision of the ISO CBC-mode encryption standard [3]. Some of the attacks in [8] require knowledge and manipulation of the initialisation vector (IV). The latest draft of the revision of the standard [4] recommends the use of IVs that are secret and random. This obviates most of the attacks of [8]. In this paper we consider the security of CBC-mode encryption against padding oracle attacks in this secret, random IV setting. We present new attacks showing that several ISO padding methods axe still weak in this situation.
引用
收藏
页码:299 / 319
页数:21
相关论文
共 6 条
  • [1] Error oracle attacks on CBC mode: Is there a future for CBC mode encryption?
    Mitchell, CJ
    INFORMATION SECURITY, PROCEEDINGS, 2005, 3650 : 244 - 258
  • [2] Padding oracle attacks on the ISOCBC mode encryption standard
    Paterson, KG
    Yau, A
    TOPICS IN CRYPTOLOGY - CT-RSA 2004, PROCEEDINGS, 2004, 2964 : 305 - 323
  • [3] Immunising CBC Mode Against Padding Oracle Attacks: A Formal Security Treatment
    Paterson, Kenneth G.
    Watson, Gaven J.
    SECURITY AND CRYPTOGRAPHY FOR NETWORKS, PROCEEDINGS, 2008, 5229 : 340 - 357
  • [4] A High Throughput/Gate AES Hardware Architecture by Compressing Encryption and Decryption Datapaths - Toward Efficient CBC-Mode Implementation
    Ueno, Rei
    Morioka, Sumio
    Homma, Naofumi
    Aoki, Takafumi
    CRYPTOGRAPHIC HARDWARE AND EMBEDDED SYSTEMS - CHES 2016, 2016, 9813 : 538 - 558
  • [5] Public key encryption with keyword search secure against keyword guessing attacks without random oracle
    Fang, Liming
    Susilo, Willy
    Ge, Chunpeng
    Wang, Jiandong
    INFORMATION SCIENCES, 2013, 238 : 221 - 241
  • [6] Keyword guessing attacks on a public key encryption with keyword search scheme without random oracle and its improvement
    Lu, Yang
    Wang, Gang
    Li, Jiguo
    INFORMATION SCIENCES, 2019, 479 : 270 - 276