A general linear iterative cryptanalysis methodfor solving binary systems of approximate linear equations which is also applicable to keystream generators producing short keystream sequences is proposed. A linear cryptanalysis method for reconstructing the secret key in a general type of initialization schemes is also developed. A large class of linear correlations in the Bluetooth combiner, unconditioned or conditionedon the output or on both the output andone input, are found andcharacterized. As a result, an attack on the Bluetooth stream cipher that can reconstruct the 128-bit secret key with complexity about 270 from about 45 initializations is proposed. In the precomputation stage, a database of about 280 103-bit words has to be sorted out.

Linear Cryptanalysis of Bluetooth Stream Cipher / Goli´c, Jovan Dj; Bagini, Vittorio; Morgari, Guglielmo. - STAMPA. - 2332:(2002), pp. 238-255. (Intervento presentato al convegno EUROCRYPT 2002 - International Conference on the Theory and Applications of Cryptographic Techniques tenutosi a Amsterdam (The Netherlands) nel April/May 2002).

Linear Cryptanalysis of Bluetooth Stream Cipher

Morgari, Guglielmo
2002

Abstract

A general linear iterative cryptanalysis methodfor solving binary systems of approximate linear equations which is also applicable to keystream generators producing short keystream sequences is proposed. A linear cryptanalysis method for reconstructing the secret key in a general type of initialization schemes is also developed. A large class of linear correlations in the Bluetooth combiner, unconditioned or conditionedon the output or on both the output andone input, are found andcharacterized. As a result, an attack on the Bluetooth stream cipher that can reconstruct the 128-bit secret key with complexity about 270 from about 45 initializations is proposed. In the precomputation stage, a database of about 280 103-bit words has to be sorted out.
2002
File in questo prodotto:
File Dimensione Formato  
3-540-46035-7 (1).pdf

accesso riservato

Tipologia: 2a Post-print versione editoriale / Version of Record
Licenza: Non Pubblico - Accesso privato/ristretto
Dimensione 379.13 kB
Formato Adobe PDF
379.13 kB Adobe PDF   Visualizza/Apri   Richiedi una copia
Pubblicazioni consigliate

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/11583/2949619