J4

• Original Articles • Previous Articles     Next Articles

Square attack on the 14-round block cipher SMS4

ZHONG Ming-fu;HU Yu-pu;CHEN Jie
  

  1. (Ministry of Education Key Lab. of Computer Network and Information Security, Xidian Univ., Xi′an 710071, China)
  • Received:1900-01-01 Revised:1900-01-01 Online:2008-02-20 Published:2008-01-20
  • Contact: ZHONG Ming-fu E-mail:mfzh023@163.com

Abstract: In order to make a new security evaluation for the block cipher SMS4, a certain plaintext is chosen to built a gamma set that contains three active words. Based on the character of the diversification of the active words in the round structure of SMS4, a balance word is found in the ninth round by observing the spread path of the balance words, and therefore a new 12-round distinguisher is constructed, by use of which a 14-round square attack is made on SMS4. In the attack 232chosen plaintexts are needed and the time complexity is about 296.5.Thus the 14-round SMS4 is not immune to the Square attack.

Key words: SMS4, square attack, time complexity, block cipher

CLC Number: 

  • TN918.1