[Resource Topic] 2015/134: From Related-Key Distinguishers to Related-Key-Recovery on Even-Mansour Constructions

Welcome to the resource topic for 2015/134

Title:
From Related-Key Distinguishers to Related-Key-Recovery on Even-Mansour Constructions

Authors: Pierre Karpman

Abstract:

We show that a distinguishing attack in the related key model on an Even-Mansour block cipher can readily be converted into an extremely efficient key recovery attack. Concerned ciphers include in particular all iterated Even-Mansour schemes with independent keys. We apply this observation to the Caesar candidate Prøst-OTR and are able to recover the whole key with a number of requests linear in its size. This improves on recent forgery attacks in a similar setting.

ePrint: https://eprint.iacr.org/2015/134

See all topics related to this paper.

Feel free to post resources that are related to this paper below.

Example resources include: implementations, explanation materials, talks, slides, links to previous discussions on other websites.

For more information, see the rules for Resource Topics .