%0 Journal Article %T Cryptanalysis of Achterbahn-Version 1 and -Version 2 %A Xiao-Li Huang %A Chuan-Kun Wu %A
Xiao-Li %A Huang %A and %A Chuan-Kun %A Wu %J 计算机科学技术学报 %D 2007 %I %X Achterbahn is one of the candidate stream ciphers submitted to the eSTREAM,which is the ECRYPT Stream Cipher Project.The cipher Achterbahn uses a new structure which is based on several nonlinear feedback shift registers (NLFSR)and a nonlinear combining output Boolean function.This paper proposes distinguishing attacks on Achterbahn- Version 1 and-Version 2 on the reduced mode and the full mode.These distinguishing attacks are based on linear approxi- mations of the output functions.On the basis of these linear approximations and the periods of the registers,parity checks with noticeable biases are found.Then distinguishing attacks can be achieved through these biased parity checks.As to Achterbahn-Version 1,three cases that the output function has three possibilities are analyzed.Achterbahn-Version 2,the modification version of Achterbahn-Version 1,is designed to avert attacks based on approximations of the output Boolean function.Our attack with even nmch lower complexities on Achterbahn-Version 2 shows that Achterbahn-Version 2 cannot prevent attacks based on linear approximations. %K cryptology %K cryptanalysis %K distinguishing attack %K stream cipher %K Achterbahn %K eSTREAM
密码学 %K 密码分析 %K 特异性攻击 %K 流密码 %K eSTREAM %U http://www.alljournals.cn/get_abstract_url.aspx?pcid=5B3AB970F71A803DEACDC0559115BFCF0A068CD97DD29835&cid=8240383F08CE46C8B05036380D75B607&jid=F57FEF5FAEE544283F43708D560ABF1B&aid=CBCDFFE5AEBDB1BF67272D63564F0428&yid=A732AF04DDA03BB3&vid=BC12EA701C895178&iid=38B194292C032A66&sid=8F2250DA83AF77B8&eid=D93AD940782892D0&journal_id=1000-9000&journal_name=计算机科学技术学报&referenced_num=0&reference_num=25