In this paper, we discuss the impossible differential cryptanalysis for the block cipher Zodiac. The main design principles of Zodiac include simplicity and efficiency. However, the diffusion layer in its round function is too simple to offer enough security. The impossible differential cryptanalysis exploits such weakness in Zodiac. Our attack using a 14-round impossible characteristic derives the 128-bit master key of the full 16-round Zodiac faster than the exhaustive search. The efficiency of the attack compared with exhaustive search increases as the key size increases.
The copyright of the original papers published on this site belongs to IEICE. Unauthorized use of the original or translated papers is prohibited. See IEICE Provisions on Copyright for details.
Copy
Deukjo HONG, Jaechul SUNG, Shiho MORIAI, Sangjin LEE, Jongin LIM, "Impossible Differential Cryptanalysis of Zodiac" in IEICE TRANSACTIONS on Fundamentals,
vol. E85-A, no. 1, pp. 38-43, January 2002, doi: .
Abstract: In this paper, we discuss the impossible differential cryptanalysis for the block cipher Zodiac. The main design principles of Zodiac include simplicity and efficiency. However, the diffusion layer in its round function is too simple to offer enough security. The impossible differential cryptanalysis exploits such weakness in Zodiac. Our attack using a 14-round impossible characteristic derives the 128-bit master key of the full 16-round Zodiac faster than the exhaustive search. The efficiency of the attack compared with exhaustive search increases as the key size increases.
URL: https://global.ieice.org/en_transactions/fundamentals/10.1587/e85-a_1_38/_p
Copy
@ARTICLE{e85-a_1_38,
author={Deukjo HONG, Jaechul SUNG, Shiho MORIAI, Sangjin LEE, Jongin LIM, },
journal={IEICE TRANSACTIONS on Fundamentals},
title={Impossible Differential Cryptanalysis of Zodiac},
year={2002},
volume={E85-A},
number={1},
pages={38-43},
abstract={In this paper, we discuss the impossible differential cryptanalysis for the block cipher Zodiac. The main design principles of Zodiac include simplicity and efficiency. However, the diffusion layer in its round function is too simple to offer enough security. The impossible differential cryptanalysis exploits such weakness in Zodiac. Our attack using a 14-round impossible characteristic derives the 128-bit master key of the full 16-round Zodiac faster than the exhaustive search. The efficiency of the attack compared with exhaustive search increases as the key size increases.},
keywords={},
doi={},
ISSN={},
month={January},}
Copy
TY - JOUR
TI - Impossible Differential Cryptanalysis of Zodiac
T2 - IEICE TRANSACTIONS on Fundamentals
SP - 38
EP - 43
AU - Deukjo HONG
AU - Jaechul SUNG
AU - Shiho MORIAI
AU - Sangjin LEE
AU - Jongin LIM
PY - 2002
DO -
JO - IEICE TRANSACTIONS on Fundamentals
SN -
VL - E85-A
IS - 1
JA - IEICE TRANSACTIONS on Fundamentals
Y1 - January 2002
AB - In this paper, we discuss the impossible differential cryptanalysis for the block cipher Zodiac. The main design principles of Zodiac include simplicity and efficiency. However, the diffusion layer in its round function is too simple to offer enough security. The impossible differential cryptanalysis exploits such weakness in Zodiac. Our attack using a 14-round impossible characteristic derives the 128-bit master key of the full 16-round Zodiac faster than the exhaustive search. The efficiency of the attack compared with exhaustive search increases as the key size increases.
ER -