2017
DOI: 10.1007/978-3-319-70697-9_6
|View full text |Cite
|
Sign up to set email alerts
|

Grover Meets Simon – Quantumly Attacking the FX-construction

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
1
1
1

Citation Types

0
91
0

Year Published

2018
2018
2024
2024

Publication Types

Select...
4
2
1

Relationship

0
7

Authors

Journals

citations
Cited by 116 publications
(91 citation statements)
references
References 18 publications
0
91
0
Order By: Relevance
“…1). If we were in the Q2 model, we could recover k 1 by using the technique by Leander and May [31] in timeÕ(2 n/3 ). However, their technique is not applicable in the Q1 setting since quantum queries are required.…”
Section: Target Modelmentioning
confidence: 99%
See 2 more Smart Citations
“…1). If we were in the Q2 model, we could recover k 1 by using the technique by Leander and May [31] in timeÕ(2 n/3 ). However, their technique is not applicable in the Q1 setting since quantum queries are required.…”
Section: Target Modelmentioning
confidence: 99%
“…Moreover, our attack idea in the Q1 model can also be used to reduce the number of quantum queries of attacks in the Q2 model. The Leander and May's attack on the FX construction in the Q2 model [31] guesses the m-bit key k of the FX construction FX k,kin,kout and checks whether the guess is correct by using Simon's algorithm, which requires O(2 m/2 ) online quantum queries and O(2 m/2 ) offline quantum computations. Roughly speaking, the guess k ′ for the key k is correct if and only if (f k ′ ⊕ g)(x) has the secret period k in , where f k ′ (x) = E k ′ (x) and g(x) = FX k,kin,kout (x).…”
Section: Target Modelmentioning
confidence: 99%
See 1 more Smart Citation
“…Therefore, we have to construct a quantum algorithm that exhibits less time complexity than both 2 n and 2 1.25n . Inspired by Leander and May's study [16], we combine Grover's and Simon's algorithms to observe the round keys.…”
Section: Quantum Key-recovery Attacks On 5-round Feistel Structuresmentioning
confidence: 99%
“…At Asiacrypt 2017, Leander and May [16] presented a quantum key-recovery attack on FX-construction, which were introduced by Kilian and Rogaway [17] to strengthen DES, as shown in Figure 2:…”
Section: Introductionmentioning
confidence: 99%