unrestricted
Good Variants of HB + are Hard to Find
(The Cryptanalysis of HB ++ , HB ∗ and HB-MP)
Henri Gilbert, Matt Robshaw, and Yannick Seurin
Financial Crypto 2008 – January 29, 2008
Good Variants of HB + are Hard to Find (The Cryptanalysis of HB ++ , - - PowerPoint PPT Presentation
unrestricted Good Variants of HB + are Hard to Find (The Cryptanalysis of HB ++ , HB and HB-MP) Henri Gilbert, Matt Robshaw, and Yannick Seurin Financial Crypto 2008 January 29, 2008 intro HB+ HB-MP HB* HB++ conclusion the context
unrestricted
Financial Crypto 2008 – January 29, 2008
Financial Crypto 2008 – Y. Seurin 1 Orange Labs
intro HB+ HB-MP HB* HB++ conclusion
Financial Crypto 2008 – Y. Seurin 2 Orange Labs
intro HB+ HB-MP HB* HB++ conclusion
Financial Crypto 2008 – Y. Seurin 3 Orange Labs
intro HB+ HB-MP HB* HB++ conclusion
a
2 z
Financial Crypto 2008 – Y. Seurin 4 Orange Labs
intro HB+ HB-MP HB* HB++ conclusion
b
a
2 z
Financial Crypto 2008 – Y. Seurin 5 Orange Labs
intro HB+ HB-MP HB* HB++ conclusion
distribution of the number of errors
Financial Crypto 2008 – Y. Seurin 6 Orange Labs
intro HB+ HB-MP HB* HB++ conclusion
Financial Crypto 2008 – Y. Seurin 7 Orange Labs
intro HB+ HB-MP HB* HB++ conclusion
Financial Crypto 2008 – Y. Seurin 8 Orange Labs
intro HB+ HB-MP HB* HB++ conclusion
b
a′=a⊕δ
a
2 z′
Financial Crypto 2008 – Y. Seurin 9 Orange Labs
intro HB+ HB-MP HB* HB++ conclusion
distribution of the number of errors
Financial Crypto 2008 – Y. Seurin 10 Orange Labs
intro HB+ HB-MP HB* HB++ conclusion
Financial Crypto 2008 – Y. Seurin 11 Orange Labs
intro HB+ HB-MP HB* HB++ conclusion
Financial Crypto 2008 – Y. Seurin 12 Orange Labs
intro HB+ HB-MP HB* HB++ conclusion
(b,w)
a
z
Financial Crypto 2008 – Y. Seurin 13 Orange Labs
intro HB+ HB-MP HB* HB++ conclusion
t−ηr r(1−2η) )
Financial Crypto 2008 – Y. Seurin 14 Orange Labs
intro HB+ HB-MP HB* HB++ conclusion
Financial Crypto 2008 – Y. Seurin 15 Orange Labs
intro HB+ HB-MP HB* HB++ conclusion
b
a
(z,z′)
Financial Crypto 2008 – Y. Seurin 16 Orange Labs
intro HB+ HB-MP HB* HB++ conclusion
B
A
Financial Crypto 2008 – Y. Seurin 17 Orange Labs
intro HB+ HB-MP HB* HB++ conclusion
i is
i ⊕ (f(ai ⊕ δ) ⊕ f(ai))≪i · x
Financial Crypto 2008 – Y. Seurin 18 Orange Labs
intro HB+ HB-MP HB* HB++ conclusion
Financial Crypto 2008 – Y. Seurin 19 Orange Labs
intro HB+ HB-MP HB* HB++ conclusion
Financial Crypto 2008 – Y. Seurin 20 Orange Labs
intro HB+ HB-MP HB* HB++ conclusion
Financial Crypto 2008 – Y. Seurin 21 Orange Labs
intro HB+ HB-MP HB* HB++ conclusion
Financial Crypto 2008 – Y. Seurin 22 Orange Labs
intro HB+ HB-MP HB* HB++ conclusion
Financial Crypto 2008 – Y. Seurin 23 Orange Labs
intro HB+ HB-MP HB* HB++ conclusion