CRICOS No. 00213J
a university for the world
real
R
Investigating the security properties
- f MACs based on stream ciphers
Investigating the security properties of MACs based on stream - - PowerPoint PPT Presentation
Investigating the security properties of MACs based on stream ciphers Leonie Simpson, Mufeed Al Mashrafi, Harry Bartlett, Ed Dawson and Kenneth Wong Institute for Future Environments Science and Engineering Faculty Queensland University of
CRICOS No. 00213J
a university for the world
R
CRICOS No. 00213J
a university for the world
R
CRICOS No. 00213J
a university for the world
R
CRICOS No. 00213J
a university for the world
R
CRICOS No. 00213J
a university for the world
R
CRICOS No. 00213J
a university for the world
R
CRICOS No. 00213J
a university for the world
R
CRICOS No. 00213J
a university for the world
R
CRICOS No. 00213J
a university for the world
R
CRICOS No. 00213J
a university for the world
R
CRICOS No. 00213J
a university for the world
R
CRICOS No. 00213J
a university for the world
R
CRICOS No. 00213J
a university for the world
R
CRICOS No. 00213J
a university for the world
R
CRICOS No. 00213J
a university for the world
R
CRICOS No. 00213J
a university for the world
R
– Does not change accumulated value, so MAC(M’) = MAC(M) – Forge valid MAC with probability 1
– Forge MAC(M’) by shifting MAC(M) and guessing appropriate bit/s – Insert one zero - forge valid MAC with probability ½ – Insert i zeroes - forge valid MAC with probability 2-i
CRICOS No. 00213J
a university for the world
R
position, such as the start of the keystream sequence y
CRICOS No. 00213J
a university for the world
R
CRICOS No. 00213J
a university for the world
R
CRICOS No. 00213J
a university for the world
R
CRICOS No. 00213J
a university for the world
R
– LFSR update, and – nonlinear filter feedback
CRICOS No. 00213J
a university for the world
R
transmission is ciphertext
CRICOS No. 00213J
a university for the world
R
CRICOS No. 00213J
a university for the world
R
CRICOS No. 00213J
a university for the world
R
CRICOS No. 00213J
a university for the world
R
CRICOS No. 00213J
a university for the world
R
CRICOS No. 00213J
a university for the world
R
CRICOS No. 00213J
a university for the world
R
CRICOS No. 00213J
a university for the world
R
CRICOS No. 00213J
a university for the world
R
Case Nonlinear filter M / A0 Other condition Forced collisions ? Overall outcome 1 not used any — Yes not secure (collisions) 2a used both known σm = σz Yes not secure (collisions) 2b used both known σm ≠ σz Unlikely not secure – other 2c used either unknown — No secure
CRICOS No. 00213J
a university for the world
R
CRICOS No. 00213J
a university for the world
R
CRICOS No. 00213J
a university for the world
R
CRICOS No. 00213J
a university for the world
R