Impossible Differential-Linear Cryptanalysis of Reduced-Round CLEFIA-128

Provided by: Xider Games
Topic: Security
Format: PDF
CLEFIA is a 128-bit block cipher supporting key lengths of 128, 192 and 256 bits. The authors' paper introduces a new chosen text attack, impossible differential-linear attack, on iterated cryptosystems. The attack is efficient for 16-round CLEFIA with whitening keys. In the paper, they construct a 13-round impossible differential-linear distinguisher. Based on the distinguisher, they present an effective attack on 16-round CLEFIA- 128 with data complexity of 2115:52, recovering 96-bit sub-keys in total. Besides, the results of 15-round CLEFIA-128 are given in the appendix C. Their attack can also applied to CLEFIA-192 and CLEFIA-256.

Find By Topic