Presentation 2003/3/20
S-Box-and-Bit-Sliced Analysis of DES (VI) : Information-Theoretic Sensitivity Analysis of last-round-key of DES using Maximum Likelihood Estimators for i.i.d. sequence
Tohru KOHDA, Takayuki TSURUTA, Hiroshi ISHIHARA, Shoji SHIBA, Nobuoki EJIMA,
PDF Download Page PDF download Page Link
Abstract(in Japanese) (See Japanese page)
Abstract(in English) Dual representation of 2-round DES characteristics, denoted by S_i, is introduced whose input and output random vectors consist of 6-dimensional lefthalf bit and 12-dimensional righthalf bit. We can observe frequencies between an output random variable, being EOR-operated with an input lefthalf bit and its input random 6-dimensional vector observed in the last-round S-box, referred to as dual trellis module. We introduce the likelihood function for input lefthalf bit sequence, based on the binomial distribution with probability 1/2+δ to guess the associated key vector. It is shown from the statistical point of view that the precise estimate of δ requires δ^<-2> ciphertexts only. Simple numerical simulation results show that the X^2 statistics play an important role in determining the last-round-key vectors correctly.
Keyword(in Japanese) (See Japanese page)
Keyword(in English) DES / S-box-and-bit-slicing / dual representation / i.i.d. sequence / maximum-likelihood estimator / X^2-test / resistance for ciphertext-only attack
Paper # IT2002-80,ISEC2002-138,SST2002-186,ITS2002-163
Date of Issue

Conference Information
Committee ISEC
Conference Date 2003/3/20(1days)
Place (in Japanese) (See Japanese page)
Place (in English)
Topics (in Japanese) (See Japanese page)
Topics (in English)
Chair
Vice Chair
Secretary
Assistant

Paper Information
Registration To Information Security (ISEC)
Language JPN
Title (in Japanese) (See Japanese page)
Sub Title (in Japanese) (See Japanese page)
Title (in English) S-Box-and-Bit-Sliced Analysis of DES (VI) : Information-Theoretic Sensitivity Analysis of last-round-key of DES using Maximum Likelihood Estimators for i.i.d. sequence
Sub Title (in English)
Keyword(1) DES
Keyword(2) S-box-and-bit-slicing
Keyword(3) dual representation
Keyword(4) i.i.d. sequence
Keyword(5) maximum-likelihood estimator
Keyword(6) X^2-test
Keyword(7) resistance for ciphertext-only attack
1st Author's Name Tohru KOHDA
1st Author's Affiliation Department of Computer Science and Communication Engineering, Kyushu University()
2nd Author's Name Takayuki TSURUTA
2nd Author's Affiliation Department of Computer Science and Communication Engineering, Kyushu University
3rd Author's Name Hiroshi ISHIHARA
3rd Author's Affiliation Department of Computer Science and Communication Engineering, Kyushu University
4th Author's Name Shoji SHIBA
4th Author's Affiliation Department of Computer Science and Communication Engineering, Kyushu University
5th Author's Name Nobuoki EJIMA
5th Author's Affiliation Department of Medical Information Analysis, Oita Medical University
Date 2003/3/20
Paper # IT2002-80,ISEC2002-138,SST2002-186,ITS2002-163
Volume (vol) vol.102
Number (no) 744
Page pp.pp.-
#Pages 8
Date of Issue