[Resource Topic] 2008/499: Some Observations on HC-128

Welcome to the resource topic for 2008/499

Title:
Some Observations on HC-128

Authors: Subhamoy Maitra, Goutam Paul, Shashwat Raizada

Abstract:

In this paper, we use linear approximations of the addition modulo 2^n of three n-bit integers to identify linear approximations of g_1, g_2, the feedback functions of HC-128. This, in turn, shows that the process of keystream output generation of HC-128 can be well approximated by linear functions. In this direction, we show that the ``least significant bit" based distinguisher (presented by the designer himself) of HC-128 works for the complete 32-bit word. In a different note, in the line of Dunkelman’s observation, we also study how HC-128 keystream words leak secret state information of the cipher due to the properties of the functions h_1, h_2 and present improved results.

ePrint: https://eprint.iacr.org/2008/499

See all topics related to this paper.

Feel free to post resources that are related to this paper below.

Example resources include: implementations, explanation materials, talks, slides, links to previous discussions on other websites.

For more information, see the rules for Resource Topics .