[en] Loiss is a byte-oriented stream cipher designed by Dengguo Feng et al. Its design builds upon the design of the SNOW family of ciphers. The algorithm consists of a linear feedback shift register (LFSR) and a non-linear finite state machine (FSM). Loiss utilizes a structure called Byte-Oriented Mixer with Memory (BOMM) in its filter generator, which aims to improve resistance against algebraic attacks, linear distinguishing attacks and fast correlation attacks. In this paper, by exploiting some differential properties of the BOMM structure during the cipher initialization phase, we provide an attack of a practical complexity on Loiss in the related-key model. As confirmed by our experimental results, our attack recovers 92 bits of the 128-bit key in less than one hour on a PC with 3 GHz Intel Pentium 4 processor. The possibility of extending the attack to a resynchronization attack in a single-key model is discussed. We also show that Loiss is not resistant to slide attacks.
Disciplines :
Sciences informatiques
Identifiants :
UNILU:UL-CONFERENCE-2013-072
Auteur, co-auteur :
BIRYUKOV, Alex ; University of Luxembourg > Faculty of Science, Technology and Communication (FSTC) > Computer Science and Communications Research Unit (CSC)
Kircanski, Aleksandar; Concordia Institute for Information Systems Engineering (CIISE), Concordia University, Montreal, Quebec, H3G 1M8, Canada
Specification of the 3GPP Confidentiality and Integrity Algorithms 128-EEA3 and 128-EIA3. Document 2: ZUC Specification (2010), http://www.dacas.cn
Specification of SMS4, Block Cipher for WLAN Products - SMS4, Declassified (September 2006), (in Chinese) http://www.oscca.gov.cn/UpFile/ 200621016423197990.pdf
ETSI/SAGE. Specification of the 3GPP Confidentiality and Integrity Algorithms UEA2 & UIA2 Document 2: SNOW 3G Specification (version 1.1) (September 2006), http://www.3gpp.org/ftp
Feng, D., Feng, X., Zhang, W., Fan, X., Wu, C.: Loiss: A Byte-Oriented Stream Cipher. In: Chee, Y.M., Guo, Z., Ling, S., Shao, F., Tang, Y.,Wang, H., Xing, C. (eds.) IWCC 2011. LNCS, vol. 6639, pp. 109-125. Springer, Heidelberg (2011)
Kircanski, A., Youssef, A.: On the Sliding Property of SNOW 3G and SNOW 3.0. IET Information Security 4(5), 199-206 (2011)
Knellwolf, S., Meier, W., Naya-Plasencia, M.: Conditional Differential Cryptanalysis of Trivium and KATAN. In: Miri, A., Vaudenay, S. (eds.) SAC 2011. LNCS, vol. 7118, pp. 200-212. Springer, Heidelberg (2012)
Lin, D., Jie, G.: Cryptanalysis of Loiss Stream Cipher. To appear in: The Computer Journal (2012), http://comjnl.oxfordjournals.org/content/early/2012/ 05/21/comjnl.bxs047.short?rss=1