Sciweavers

ACISP
2006
Springer

Distinguishing Attack on SOBER-128 with Linear Masking

14 years 6 months ago
Distinguishing Attack on SOBER-128 with Linear Masking
Abstract. We present a distinguishing attack against SOBER-128 with linear masking. We found a linear approximation which has a bias of 2−8.8 for the non-linear filter. The attack applies the observation made by Ekdahl and Johansson that there is a sequence of clocks for which the linear combination of some states vanishes. This linear dependency allows that the linear masking method can be applied. We also show that the bias of the distinguisher can be improved (or estimated more precisely) by considering quadratic terms of the approximation. The probability bias of the quadratic
Joo Yeon Cho, Josef Pieprzyk
Added 13 Jun 2010
Updated 13 Jun 2010
Type Conference
Year 2006
Where ACISP
Authors Joo Yeon Cho, Josef Pieprzyk
Comments (0)