arrow
返回

Using Linearizing Sets to Solve Multivariate Quadratic Equations in Algebraic Cryptanalysis

delete2023-01-01
delete1
delete
OA
AI
A
Alexander Semenov *
K
K. V. Antonov
S
Stepan Kochemazov
A
Artem Pavlenko
DOI:10.1109/ACCESS.2023.3328215delete
delete原文链接
delete原文求助
delete分享
delete收藏
摘要

摘要

En 中文
In this paper we describe a class of cryptographic guess-and-determine attacks which is based on the notion of a linearizing set. A linearizing set-based attack is applied to a system of Multivariate Quadratic equations (MQ) over GF(2) field, which encodes how a considered cryptographic function works. By substituting into such MQ system a random (in some strict sense) assignment of variables from a linearizing set we aim to transform the system into a linear one. We introduce a probability of such an event and call it a probability of linearization. Then we describe a guess-and-determine attack, the hardness of which can be expressed via a probability of linearization. To estimate the latter it is possible to use a simple Monte Carlo algorithm. Also we describe a technique that allows to augment a considered MQ system by new linear equations and to construct a new MQ system, for which the probability of linearization is usually larger than that for an original one. For this purpose we apply a SAT oracle to a Boolean formula that is naturally associated with a considered MQ system. Finally, we reduce the problem of searching for a linearizing set that yields the best effectiveness of a constructed guess-and-determine attack to a pseudo-Boolean optimization problem, which can be solved using metaheuristic optimization algorithms. The important consequence of this is that this way we can construct guess-and-determine attacks automatically by solving the corresponding optimization problem. In the computational experiments we used the proposed methodology to construct attacks on several well-known stream ciphers. The runtime estimations of some of the attacks make it possible to implement them in reasonable time.
Keyword:
Algebraic cryptanalysis
guess-and-determine attack
system of multivariate quadratic equations
Boolean satisfiability
pseudo-Boolean optimization
evolutionary algorithm

期刊

IEEE Access 封面图
IEEE Access
IF:
3.6
论文数:
9.8W
被引数:
29.4W

机构

I
ITMO University
学者数:
4.5K
论文数: 2.9K
被引数: 3.4K
引用论文

引用论文

Using TRIS-Buffered Plasma-Activated Water to Reduce Pathogenic Microorganisms on Poultry Carcasses with Evaluation of Physicochemical and Sensory Parameters
err2023-03-06
err0
errOAAI
errVanessa Große-Peclum; Lisa Siekmann; Carsten Krischek; Georg Avramidis; Christian Ochs; Wolfgang Viöl; Madeleine Plötz
err分享
err收藏
Cryptanalysis with COPACOBANA
err2008-11-01
err76
PREAI
errGueneysu, Tim; Kasper, Timo; Novotny, Martin; Paar, Christof; Rupp, Andy
err分享
err收藏
err分享
err收藏
学者 查看更多内容