[Resource Topic] 2013/301: Impossible Differential-Linear Cryptanalysis of Reduced-Round CLEFIA-128

Welcome to the resource topic for 2013/301

Impossible Differential-Linear Cryptanalysis of Reduced-Round CLEFIA-128

Authors: Zheng Yuan, Xian Li, Bart Preneel


CLEFIA is a 128-bit block cipher proposed by Sony Corporation in 2007. Our paper introduces a new chosen text attack, the impossible differential-linear attack, on iterated cryptosystems. The attack is efficient for 16-round CLEFIA with whitening keys. In the paper, we construct a 13-round impossible differential-linear distinguisher. Based on the distinguisher, we present an effective attack on 16-round CLEFIA-128 with data complexity of 2^{122.73}, recovering 96-bit subkeys in total. Our attack can also be applied to CLEFIA-192 and CLEFIA-256.

ePrint: https://eprint.iacr.org/2013/301

