Differential Invariant Subspace Cryptanalysis – A Realtime Attack against IoT-friendly Word-based Block Ciphers

Ting Cui,Yi Zhang,Jiyan Zhang,Chenhui Jin,Shiwei Chen
DOI: https://doi.org/10.1109/jiot.2024.3358346
IF: 10.6
2024-01-01
IEEE Internet of Things Journal
Abstract:This paper considers a new cryptanalysis called differential invariant subspace cryptanalysis, which can be used to evaluate the security of IoT-friendly word-based block ciphers. This cryptanalysis estimates the behavior of differential propagation for particularly chosen input differences, and applies to the ciphers contain only the word-based components, e.g., word-based S-boxes, word-based linear mappings, etc. Firstly, this paper proves that, for any word-based block cipher, if the S-box causes the differential invariant subspace property, it then indicates a full-round distinguisher with probability 1, even if the target cipher is believed to be resistant enough against traditional differential or linear cryptanalysis. Secondly, a class of linear-equivalent S-boxes meeting the differential invariant subspace property are constructed as L∘S∘L-1, where L is any invertible linear mapping and S is a group of S-boxes in parallel. Finally, as application, we provide a full-round differential invariant subspace distinguisher for the variant Midori128 (the only difference is that the variant version utilizes only one single type S-box instead of four types). This distinguishing is experimentally verified and could be executed within negligible time.
computer science, information systems,telecommunications,engineering, electrical & electronic
What problem does this paper attempt to address?