The Retracing Boomerang Attack
Orr Dunkelman, Nathan Keller, Eyal Ronen, Adi Shamir
Abstract
Boomerang attacks are extensions of differential attacks, that make it possible to combine two unrelated differential properties of the first and second part of a cryptosystem with probabilities and into a new differential-like property of the whole cryptosystem with probability (since each one of the properties has to be satisfied twice). In this paper we describe a new version of boomerang attacks which uses the counterintuitive idea of throwing out most of the data (including potentially good cases) in order to force equalities between certain values on the ciphertext side. This creates a correlation between the four probabilistic events, which increases the probability of the combined property to and increases the signal to noise ratio of the resultant distinguisher. We call this variant a retracing boomerang attack since we make sure that the boomerang we throw follows the same path on its forward and backward directions.
To demonstrate the power of the new technique, we apply it to the case of 5-round AES. This version of AES was repeatedly attacked by a large variety of techniques, but for twenty years its complexity had remained stuck at . At Crypto'18 it was finally reduced to (for full key recovery), and with our new technique we can further reduce the complexity of full key recovery to the surprisingly low value of (i.e., only 90,000 encryption/decryption operations are required for a full key recovery on half the rounds of AES).
In addition to improving previous attacks, our new technique unveils a hidden relationship between boomerang attacks and two other cryptanalytic techniques, the yoyo game and the recently introduced mixture differentials.
Ask about this paper
Ask your agent about it.
Lune has read the top-tier papers around this one, so every answer names the papers it rests on.
Your agent calls
Lunesearch_papers
Free to start. No credit card required.
Terminal
Install the CLIlune papers get f8aff049-cc16-4ef0-a66c-5e7c3ca0b89dCited by top-tier papers2
- Truncated Boomerang Attacks and Application to AES-Based CiphersAugustin Bariant, Gaëtan LeurentEUROCRYPT 2023 · 29 citations
- Partial Sums Meet FFT: Improved Attack on 6-Round AESOrr Dunkelman, Shibam Ghosh, Nathan Keller, Gaëtan Leurent et al.EUROCRYPT 2024 · 10 citations
Related papers
- Efficient Detection of High Probability Statistical Properties of Cryptosystems via Surrogate DifferentiationItai Dinur, Orr Dunkelman, Nathan Keller, Eyal Ronen et al.EUROCRYPT 2023 · 5 citations
- Differential Meet-In-The-Middle CryptanalysisChristina Boura, Nicolas David, Patrick Derbez, Gregor Leander et al.CRYPTO 2023 · 24 citations
- Probabilistic Extensions: A One-Step Framework for Finding Rectangle Attacks and BeyondLing Song, Qianqian Yang, Yincen Chen, Lei Hu et al.EUROCRYPT 2024 · 10 citations
- Better Steady than Speedy: Full Break of SPEEDY-7-192Christina Boura, Nicolas David, Rachelle Heim Boissier, María Naya-PlasenciaEUROCRYPT 2023 · 16 citations
- Improved Differential Meet-in-the-Middle CryptanalysisZahra Ahmadian, Akram Khalesi, Dounia M'foukh, Hossein Moghimi et al.EUROCRYPT 2024 · 14 citations
