MILP-based Related-Key Rectangle Attack and Its Application to GIFT, Khudra, MIBS

  • Lele Chen
  • , Gaoli Wang
  • , Guo Yan Zhang*
  • *Corresponding author for this work

Research output: Contribution to journalArticlepeer-review

16 Scopus citations

Abstract

The rectangle attack is the extension of the traditional differential attack and is evolved from the boomerange attack. It has been widely used to attack several existing ciphers. In this article, we study the security of lightweight block ciphers GIFT, Khudra and MIBS against related-key rectangle attack. We use Mixed-Integer Linear Programming-aided cryptanalysis to search rectangle distinguishers by taking into account the effect of the ladder switch technique. For GIFT, we build a 19-round related-key rectangle distinguisher and attack on 23-round GIFT-64, which requires 260 chosen plaintexts and 2107 encryptions. For Khudra, a 14-round related-key rectangle distinguisher can be built, which leads us to a 17-round rectangle attack. Our attack on 17-round Khudra requires a data complexity of 262.9 chosen plaintexts and a time complexity of 273.9 encryptions. For MIBS, we construct a 13-round related-key rectangle distinguisher and propose an attack on 15-round MIBS-64 with time complexity of 259 and data complexity of 245. Compared to the previous best related-key rectangle attack, we can attack one more round on Khudra and MIBS-64 than before.

Original languageEnglish
Pages (from-to)1805-1821
Number of pages17
JournalComputer Journal
Volume62
Issue number12
DOIs
StatePublished - 10 Dec 2019

Keywords

  • MILP
  • differential cryptanalysis
  • related-key rectangle attack

Fingerprint

Dive into the research topics of 'MILP-based Related-Key Rectangle Attack and Its Application to GIFT, Khudra, MIBS'. Together they form a unique fingerprint.

Cite this