Advances in Cryptology — CRYPTO ’94
Author(s) -
Yvo Desmedt
Publication year - 1994
Publication title -
lecture notes in computer science
Language(s) - English
Resource type - Book series
SCImago Journal Rank - 0.249
H-Index - 400
eISSN - 1611-3349
pISSN - 0302-9743
DOI - 10.1007/3-540-48658-5
Subject(s) - cryptography , computer science , computer security
This paper drrcribes ail improved version of linear cryptanalysis and its applicat,ion t,o t .hr first, successful coniput,er experiment in breaking the full 16-round DES. ‘Ihe scenario is a known-p]a.intext at,ta.ck based on t,wo new linear approximate equations, each of which provides candidates for 13 secret. key bits wit,h negligible memory. Moreover, reliability of the key candidates is taken into consideration, which increases the siicccss r a k . As a result, the full 16-round DES is breakable wit,h high success probability if 243 random plaintexts and their ciphertexts are available. Thc aiit,hor ca.rried out, the first experimental attack iisiiig twrlvr computers to confirm t , l i k : t i c lirially reached all of the 56 secret, key bit.s i n fifty days, out o f which f0rt.y clays were spent for generating plaintexts and t,heir ciphertexts and only t>en days were spent for tshe actual key search.
Accelerating Research
Robert Robinson Avenue,
Oxford Science Park, Oxford
OX4 4GP, United Kingdom
Address
John Eccles HouseRobert Robinson Avenue,
Oxford Science Park, Oxford
OX4 4GP, United Kingdom