New Cryptanalysis of Block Ciphers with Low Algebraic Degree

Bing Sun,Longjiang Qu,Chao Li
DOI: https://doi.org/10.1007/978-3-642-03317-9_11
2009-01-01
Abstract:Improved interpolation attack and new integral attack are proposed in this paper, and they can be applied to block ciphers using round functions with low algebraic degree. In the new attacks, we can determine not only the degree of the polynomial, but also coefficients of soiree special terms. Thus instead of guessing the round keys one by one, we can get the round keys by solving some algebraic equations over finite field. The new methods are applied to PURE block cipher successfully. The improved interpolation attacks can recover the first round key of 8-round PURE in less than a second; r-round PURE with r <= 21 is breakable with about 3(r-2) chosen plaintexts and the time complexity is 3(r-2) encryptions; 22-round PURE is breakable with both data and time complexities being about 3 x 3(20). The new integral attacks can break PURE with rounds up to 21 with 2(32) encryptions and 22-round with 3 x 2(32) encryptions. This means that PURE with up to 22 rounds is breakable on a personal computer.
What problem does this paper attempt to address?