A general linear iterative cryptanalysis methodfor solving binary systems of approximate linear equations which is also applicable to keystream generators producing short keystream sequences is proposed. A linear cryptanalysis method for reconstructing the secret key in a general type of initialization schemes is also developed. A large class of linear correlations in the Bluetooth combiner, unconditioned or conditionedon the output or on both the output andone input, are found andcharacterized. As a result, an attack on the Bluetooth stream cipher that can reconstruct the 128-bit secret key with complexity about 270 from about 45 initializations is proposed. In the precomputation stage, a database of about 280 103-bit words has to be sorted out.
Linear Cryptanalysis of Bluetooth Stream Cipher / Goli´c, Jovan Dj; Bagini, Vittorio; Morgari, Guglielmo. - STAMPA. - 2332:(2002), pp. 238-255. (Intervento presentato al convegno EUROCRYPT 2002 - International Conference on the Theory and Applications of Cryptographic Techniques tenutosi a Amsterdam (The Netherlands) nel April/May 2002).
Linear Cryptanalysis of Bluetooth Stream Cipher
Morgari, Guglielmo
2002
Abstract
A general linear iterative cryptanalysis methodfor solving binary systems of approximate linear equations which is also applicable to keystream generators producing short keystream sequences is proposed. A linear cryptanalysis method for reconstructing the secret key in a general type of initialization schemes is also developed. A large class of linear correlations in the Bluetooth combiner, unconditioned or conditionedon the output or on both the output andone input, are found andcharacterized. As a result, an attack on the Bluetooth stream cipher that can reconstruct the 128-bit secret key with complexity about 270 from about 45 initializations is proposed. In the precomputation stage, a database of about 280 103-bit words has to be sorted out.File | Dimensione | Formato | |
---|---|---|---|
3-540-46035-7 (1).pdf
accesso riservato
Tipologia:
2a Post-print versione editoriale / Version of Record
Licenza:
Non Pubblico - Accesso privato/ristretto
Dimensione
379.13 kB
Formato
Adobe PDF
|
379.13 kB | Adobe PDF | Visualizza/Apri Richiedi una copia |
Pubblicazioni consigliate
I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.
https://hdl.handle.net/11583/2949619