A Differential Attack on Reduced-Round SC2000
暂无分享,去创建一个
SC2000 is a 128-bit block cipher with key length of 128, 192 or 256 bits, developed by Fujitsu Laboratories LTD. For 128-bit keys, SC2000 consists of 6.5 rounds, and for 192- and 256-bit keys it consists of 7.5 rounds. In this paper we demonstrate two different 3.5- round differential characteristics that hold with probabilities 2-106 and 2-107. These characteristics can be used to extract up to 32 bits of the first and last round keys in a 4.5-round variant of SC2000.
[1] Eli Biham,et al. Differential Cryptanalysis of the Data Encryption Standard , 1993, Springer New York.
[2] Kazuhiro Yokoyama,et al. The Block Cipher SC2000 , 2001, FSE.
[3] Lars R. Knudsen,et al. Truncated Differentials of SAFER , 1996, FSE.