TY - GEN
T1 - Improving the efficiency of impossible differential cryptanalysis of reduced camellia and MISTY1
AU - Lu, Jiqiang
AU - Kim, Jongsung
AU - Keller, Nathan
AU - Dunkelman, Orr
PY - 2008
Y1 - 2008
N2 - We observe that when conducting an impossible differential cryptanalysis on Camellia and MISTY1, their round structures allow us to partially determine whether a candidate pair is useful by guessing only a small fraction of the unknown required subkey bits of a relevant round at a time, instead of guessing all of them at once. Taking advantage of the early abort technique, we improve a previous impossible differential attack on 6-round MISTY1 without the FL functions, and present impossible differential cryptanalysis of 11-round Camellia-128 without the FL functions, 13-round Camellia-192 without the FL functions and 14-round Camellia-256 without the FL functions. The presented results are better than any previously published cryptanalytic results on Camellia and MISTY1 without the FL functions.
AB - We observe that when conducting an impossible differential cryptanalysis on Camellia and MISTY1, their round structures allow us to partially determine whether a candidate pair is useful by guessing only a small fraction of the unknown required subkey bits of a relevant round at a time, instead of guessing all of them at once. Taking advantage of the early abort technique, we improve a previous impossible differential attack on 6-round MISTY1 without the FL functions, and present impossible differential cryptanalysis of 11-round Camellia-128 without the FL functions, 13-round Camellia-192 without the FL functions and 14-round Camellia-256 without the FL functions. The presented results are better than any previously published cryptanalytic results on Camellia and MISTY1 without the FL functions.
KW - Block cipher
KW - Camellia
KW - Impossible differential cryptanalysis
KW - MISTY1
UR - http://www.scopus.com/inward/record.url?scp=43149101862&partnerID=8YFLogxK
U2 - 10.1007/978-3-540-79263-5_24
DO - 10.1007/978-3-540-79263-5_24
M3 - Conference contribution
AN - SCOPUS:43149101862
SN - 3540792627
SN - 9783540792628
T3 - Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
SP - 370
EP - 386
BT - Topics in Cryptology - CT-RSA 2008 - The Cryptographers' Track at the RSA Conference 2008, Proceedings
T2 - Cryptographers' Track at the RSA Conference, CT-RSA 2008
Y2 - 8 April 2008 through 11 April 2008
ER -