CryptoDB
Improving Key Recovery Linear Attacks with Walsh Spectrum Puncturing
| Authors: |
|
|---|---|
| Download: |
|
| Presentation: | Slides |
| Conference: | EUROCRYPT 2024 |
| Abstract: | In some linear key recovery attacks, the function which determines the value of the linear approximation is replaced by a similar map in order to improve the time or memory complexity at the cost of a data complexity increase. We propose a general framework for key recovery map substitution, and introduce Walsh spectrum puncturing, which consists of removing carefully-chosen coefficients from the Walsh spectrum of this map. The capabilities of this technique are illustrated by describing improved attacks on reduced-round Serpent (including the first 12-round attack on the 192-bit key variant), GIFT-128 and NOEKEON, as well as the full DES. |
BibTeX
@inproceedings{eurocrypt-2024-33919,
title={Improving Key Recovery Linear Attacks with Walsh Spectrum Puncturing},
publisher={Springer-Verlag},
doi={10.1007/978-3-031-58716-0_7},
author={Antonio Flórez-Gutiérrez and Yosuke Todo},
year=2024
}