Home > Papers

 
 
Improved Rectangle Attack on SMS4 Reduced to 18 Rounds
Kong Xianglong 1 #,Wang Wei 2 *,XU Qiuliang 2
1.School of Computer Science and Technology, Shandong University, JiNan 250101
2.School of Computer Science and Technology, Shandong University, Jinan 250101% ffil{3} School of Computer Science and Technology, Shandong University, JiNan 250101
*Correspondence author
#Submitted by
Subject:
Funding: Research Fund for the Doctoral Program of Higher Education of China (No.Grant No. 20100131120015), National Natural Science Foundation of China (No.Grant No. 61103237), Outstanding Young Scientists Foundation Grant of Shandong Province (No.No. BS2012DX018)
Opened online: 6 September 2013
Accepted by: none
Citation: Kong Xianglong ,Wang Wei ,XU Qiuliang.Improved Rectangle Attack on SMS4 Reduced to 18 Rounds[OL]. [ 6 September 2013] http://en.paper.edu.cn/en_releasepaper/content/4557323
 
 
SMS4 is a 32-round block cipher with 128-bit block size and 128-bit secret key. It is used in WAPI, the Chinese WLAN national standard. This paper analyzes the security of SMS4 against the rectangle attack. First, this paper describes two properties of SMS4. Next, it proposes the 16-round rectangle distinguisher with probability 2^-250. Finally, the rectangle attack is then carried out on 18-round SMS4 with 2^127 chosen plaintexts and the time complexity is 2^103.83 18-round encryptions. In this process a hash table is used to reduce the time complexity. This attack is the best rectangle attack on SMS4 so far.
Keywords:Cryptanalysis; SMS4; Rectangle attack
 
 
 

For this paper

  • PDF (0B)
  • ● Revision 0   
  • ● Print this paper
  • ● Recommend this paper to a friend
  • ● Add to my favorite list

    Saved Papers

    Please enter a name for this paper to be shown in your personalized Saved Papers list

Tags

Add yours

Related Papers

Statistics

PDF Downloaded 160
Bookmarked 0
Recommend 5
Comments Array
Submit your papers