Welcome!
To use the personalized features of this site, please log in or register.
If you have forgotten your username or password, we can help.
My Menu
Saved Items

Linear Cryptanalysis of RC5 and RC6

Johan BorstContact Information, Bart Preneel5 and Joos Vandewalle5

(5)  K.U. Leuven, Dept. Elektrotechniek-ESAT/COSIC, Kardinaal Mercierlaan 94, B-3001 Heverlee, Belgium
Abstract
In this paper we evaluate the resistance of the block cipher RC5 against linear cryptanalysis. We describe a known plaintext attack that can break RC5-32 (blocksize 64) with 10 rounds and RC5-64 (blocksize 128) with 15 rounds. In order to do this we use techniques related to the use of multiple linear approximations. Furthermore the success of the attack is largely based on the linear hull-effect. To our knowledge, at this moment these are the best known plaintext attacks on RC5, which have negligible storage requirements and do not make any assumption on the plaintext distribution. Furthermore we discuss the impact of our attacking method on the AES-candidate RC6, whose design was based on RC5.

Contact Information Johan Borst
Email: Johan.Borst@esat.kuleuven.ac.be
Fulltext Preview (Small, Large)
Image of the first page of the fulltext

References secured to subscribers.



Export this chapter
Export this chapter as RIS | Text
 
Referenced by
1 newer article

  1. Tokareva, N. N. (2008) On quadratic approximations in block ciphers. Problems of Information Transmission 44(3)
    [CrossRef]
Remote Address: 38.107.191.105 • Server: mpweb03
HTTP User Agent: CCBot/1.0 (+http://www.commoncrawl.org/bot.html)