AES-256密码算法的相关差分分析OA
Related Differentials Cryptanalysis on AES-256
高级加密标准(AES)是目前使用最广泛的分组密码算法,许多密码方案使用减轮AES作为其核心部件.AES-256通过256比特密钥提供强大的安全强度,是公认能够有效抵御未来量子计算攻击的AES版本.相关差分分析由AES的设计者提出,将只使用一个差分特征的传统差分分析扩展成使用一对输入和输出都具有特定关联性的差分特征,已被用于生成7轮AES-128的密钥恢复攻击,这是AES-128轮数最长的攻击之一.目前没有AES-256的相关差分分析结果.本文将相关差分分析技术应用于AES-256密码算法,给出了8轮AES-256的相关差分密钥恢复攻击,数据和存储复杂度为2110.24,时间复杂度为2235.76,这是对AES-256算法进行相关差分安全性评估的首个结果,填补了AES-256在相关差分分析领域的空白.
The advanced encryption standard(AES)is the most widely used block cipher.Round-re-duced variants of AES are employed as the core components of many cryptographic schemes.AES-256 is widely recognized as the version of AES capable of effectively resisting future quantum computing at-tacks because it provides robust security strength via a 256-bit key.Related differentials cryptanalysis is proposed by the designers of AES.The traditional differential cryptanalysis that only uses one differ-ential is extended to use a pair of differentials where both the input and output have specific correla-tions.This technique has been applied to mount a key recovery attack on 7-round AES-128,which is one of the attacks with the longest number of rounds for AES-128.Currently,there are no results about the related differentials cryptanalysis on AES-256.Related differentials cryptanalysis is applied to AES-256 to develop a related differentials key recovery attack for 8-round AES-256 with the data and memory complexities of 2110.24 and the time complexity of 2235.76 in this paper.This attack is the first re-sult about the security evaluation of AES-256 against related differentials cryptanalysis,filling the gap in the field of related differentials cryptanalysis on AES-256.
闫雪萍;谭林;戚文峰
信息工程大学,河南 郑州 450001信息工程大学,河南 郑州 450001信息工程大学,河南 郑州 450001
信息技术与安全科学
分组密码减轮AESAES-256算法相关差分密钥恢复攻击
block cipherround-reduced AESAES-256related differentialskey recovery attack
《信息工程大学学报》 2026 (3)
310-315,6
评论