MILP-Based Differential Cryptanalysis on Round-Reduced Midori64

Mixed integer linear programming (MILP) model was presented by Sun et al. at Asiacrypt 2014 to search for differential characteristics of block ciphers. Based on this model, it is easy to assess block ciphers against differential attack. In this paper, the MILP model is improved to search for differ...

Full description

Bibliographic Details
Main Authors: Hongluan Zhao, Guoyong Han, Letian Wang, Wen Wang
Format: Article
Language:English
Published: IEEE 2020-01-01
Series:IEEE Access
Subjects:
Online Access:https://ieeexplore.ieee.org/document/9096273/
Description
Summary:Mixed integer linear programming (MILP) model was presented by Sun et al. at Asiacrypt 2014 to search for differential characteristics of block ciphers. Based on this model, it is easy to assess block ciphers against differential attack. In this paper, the MILP model is improved to search for differential trails of Midori64 which is a family of lightweight block ciphers provided by Banik et al. at Asiacrypt 2015. We find the best 5-round differential characteristics of Midori64 with MILP-based model, and the probabilities are 2<sup>-52</sup> and 2<sup>-58</sup> respectively. Based on these distinguishers, we give key recovery attacks on the 11-round reduced Midori64 with data complexities of 2<sup>55.6</sup> and 2<sup>61.2</sup>, and time complexities of 2<sup>109.35</sup> and 2<sup>100.26</sup>.
ISSN:2169-3536