Cryptanalysis of the Reduced-Round RC6
Cryptanalysis of the Reduced-Round RC6
复制标题
缩减轮数 RC6 的密码分析
DOI:
10.1007/3-540-36159-6_41
复制
发表时间:
2002
期刊:
影响因子:
--
通讯作者:
Masao Nonaka
中科院分区:
文献类型:
--
作者:
A. Miyaji;Masao Nonaka
In this paper, we propose the efficient and feasible key recovery algorithm against the reduced-round RC6 without whitening, called RC6W. Our attack applies to a rather large number of rounds. RC6W with r rounds can be broken in a success probability of 90% by using 28.1r-13.8plaintexts. Therefore, our attack can break RC6W with 17 rounds by using 2123.9plaintexts in a probability of 90%.