Title :
A new higher order differential of Camellia
Author :
Sugio, Nobuyuki ; Aono, Hiroshi ; Sekino, Kimihiko ; Kaneko, Tetsuya
Author_Institution :
NTT DOCOMO, Inc., Yokosuka, Japan
Abstract :
Camellia was jointly proposed by NTT and Mitsubishi in 2000 [1]. Camellia is a 128-bit block cipher supporting key lengths of 128, 192, 256 bits. The best previous attack is Zero Correlation FFT attack proposed by Bogdanov et. al. [2] and 12-round Camellia with FL/FL-1 is attacked with 2125.7 blocks of known plaintexts and 2188.8 times of data encryption. In this paper, we focused on a higher order differential attack. We present 7-round 120-th order differential by using control transform for the input. We show 12-round Camellia with FL/FL-1 is attackable with 2124.6 blocks of chosen plaintexts and 2190.4 times of data encryption.
Keywords :
cryptography; differential equations; AD 2000; Camellia; Mitsubishi; NTT; Zero Correlation FFT attack; block cipher; chosen plaintexts; control transform; data encryption; higher order differential attack; known plaintexts; storage capacity 128 bit; storage capacity 192 bit; storage capacity 256 bit; Australia; Ciphers; Computational complexity; Correlation; Encryption; Equations;
Conference_Titel :
Information Theory and its Applications (ISITA), 2014 International Symposium on
Conference_Location :
Melbourne, VIC