摘要
本文首次给出了对MARS-like结构的量子算法攻击.通过利用Simon算法,借助周期函数f构建量子区分器,结合Grover搜索算法进行量子密钥恢复攻击.在量子选择明文条件下,对四分支MARS-like结构,我们在4轮量子区分器附加4轮进行8轮量子密钥恢复攻击;对d分支MARS-like结构,我们在d轮量子区分器附加d轮进行2d轮量子密钥恢复攻击.在量子选择密文条件下,对四分支MARS-like结构,我们在5轮量子区分器附加4轮进行9轮量子密钥恢复攻击;对d分支MARS-like结构,我们在d+1轮量子区分器附加d轮进行2d+1轮量子密钥恢复攻击.
In this paper,quantum attacks on MARS-like structure are presented.With the use of the Simon’s algorithm,the periodic function f is constructed to obtain a quantum distinguisher,and quantum key recovery attack is carried out by using the Grover search algorithm.In quantum chosen-plaintext attack setting,the 4 rounds quantum distinguisher is proposed on MARS-like structure of 4 branches,thus the 8 rounds quantum key recovery attack can be attained.The?d rounds quantum distinguisher is proposed on MARS-like structure of d branches,thus the 2d rounds quantum key recovery attack can be attained.In quantum chosen-ciphertext attack setting,the 5 rounds quantum distinguisher is proposed on MARS-like structure of 4 branches,so the 9 rounds quantum key recovery attack can be attained.The d+1 rounds quantum distinguisher is proposed on MARS-like structure of d branches,so the 2d+1 rounds quantum key recovery attack can be attained.
作者
钱新
尤启迪
周旋
张洋
赵晓晶
QIAN Xin;YOU Qi-Di;ZHOU Xuan;ZHANG Yang;ZHAO Xiao-Jing(Information Science Engineering Technology Center,Beijing Institute of Statellite Information Engineering,Beijing 100086,China;Department of Computer Science and Technology,Tsinghua University,Beijing 100084,China)
出处
《密码学报》
CSCD
2021年第3期417-431,共15页
Journal of Cryptologic Research