DocumentCode
1157407
Title
Key recovery attack on ANSI retail MAC
Author
Mitchell, C.J.
Author_Institution
Inf. Security Group, Univ. of London, Egham, UK
Volume
39
Issue
4
fYear
2003
fDate
2/20/2003 12:00:00 AM
Firstpage
361
Lastpage
362
Abstract
A new type of attack is introduced which takes advantage of message authentication code (MAC) truncation to simplify key recovery attacks based on MAC verifications. One example of the attack is described which, in certain circumstances, enables a more efficient attack than was previously known to be launched against the ANSI retail MAC. The existence of this attack means that truncation for this MAC scheme should be used with greater care than was previously believed, and very short MAC´s should be avoided altogether.
Keywords
codes; cryptography; message authentication; ANSI retail MAC; MAC truncation; MAC verifications; data security; key recovery attacks; message authentication code truncation;
fLanguage
English
Journal_Title
Electronics Letters
Publisher
iet
ISSN
0013-5194
Type
jour
DOI
10.1049/el:20030272
Filename
1184067
Link To Document