• DocumentCode
    1157407
  • Title

    Key recovery attack on ANSI retail MAC

  • Author

    Mitchell, C.J.

  • Author_Institution
    Inf. Security Group, Univ. of London, Egham, UK
  • Volume
    39
  • Issue
    4
  • fYear
    2003
  • fDate
    2/20/2003 12:00:00 AM
  • Firstpage
    361
  • Lastpage
    362
  • Abstract
    A new type of attack is introduced which takes advantage of message authentication code (MAC) truncation to simplify key recovery attacks based on MAC verifications. One example of the attack is described which, in certain circumstances, enables a more efficient attack than was previously known to be launched against the ANSI retail MAC. The existence of this attack means that truncation for this MAC scheme should be used with greater care than was previously believed, and very short MAC´s should be avoided altogether.
  • Keywords
    codes; cryptography; message authentication; ANSI retail MAC; MAC truncation; MAC verifications; data security; key recovery attacks; message authentication code truncation;
  • fLanguage
    English
  • Journal_Title
    Electronics Letters
  • Publisher
    iet
  • ISSN
    0013-5194
  • Type

    jour

  • DOI
    10.1049/el:20030272
  • Filename
    1184067