タイトル: New Analysis Based on Correlations of RC4 PRGA with Nonzero-Bit Differences
著者: MIYAJI, Atsuko
SUKEGAWA, Masahiro
キーワード: RC4 Correlation
shuffle-exchange structure
pseudo key collision
発行日: 2010-06-01
出版者: 電子情報通信学会
誌名: IEICE TRANSACTIONS on Fundamentals of Electronics, Communications and Computer Sciences
巻: E93-A
号: 6
開始ページ: 1066
終了ページ: 1077
DOI: 10.1587/transfun.E93.A.1066
抄録: RC4 is the stream cipher proposed by Rivest in 1987, which is widely used in a number of commercial products because of its simplicity and substantial security. RC4 exploits shuffle-exchange paradigm, which uses a permutation S. Many attacks have been reported so far. No study, however, has focused on correlations in the Pseudo-Random Generation (PRGA) between two permutations S and S' with some differences, nevertheless such correlations are related to an inherent weakness of shuffle-exchange-type PRGA. In this paper, we investigate the correlations between S and S' with some differences in the initial round. We show that correlations between S and S' remain before "i" is in the position where the nonzero-bit difference exists in the initial round, and that the correlations remain with non negligible probability even after "i" passed by the position. This means that the same correlations between S and S' will be observed after the 255-th round. This reveals an inherent weakness of shuffle-exchange-type PRGA.
Rights: Copyright (C)2010 IEICE. Atsuko MIYAJI, Masahiro SUKEGAWA, IEICE TRANSACTIONS on Fundamentals of Electronics, Communications and Computer Sciences, E93-A(6), 2010, 1066-1077. http://www.ieice.org/jpn/trans_online/
URI: http://hdl.handle.net/10119/9228
出現コレクション:b10-1. 雑誌掲載論文 (Journal Articles)


