Abstract
RC5 is a fast block cipher designed by Ron Rivest in 1994. Since then several attempts of cryptanalysis of this cipher were published. The best previously known attack requires 254 chosen plaintexts in order to derive the full set of 25 subkeys for the 12 round RC5 with 32 bit words. In this paper we show a drastic improvement of these results due to a novel partial differential approach. Our attack requires 244 chosen plaintexts. We show that the 64 bit word version of RC5 is also much weaker than it was expected.
As of today no known-plaintext attack on RC5, even with reduced number of rounds exists due to recent result [9] which found gaps in the linear attack on RC5 described in [3].
Chapter PDF
References
E. Biham, A. Shamir, Differential Cryptanalysis of the Data Encryption Standard, Springer-Verlag, 1993.
X. Lai, J. L. Massey, S. Murphy, Markov Ciphers and Differential Cryptanalysis., Lecture Notes in Computer Science 547, Advances in Cryptology — EUROCRYPT'91, pp.17–38, Springer-Verlag, 1992.
B. S. Kaliski, Y. L. Yin, On Differential and Linear Cryptanalysis of the RC5 Encryption Algorithm, Lecture Notes in Computer Science 963, Advances in Cryptology — CRYPTO'95, pp.171–184, Springer-Verlag, 1995.
L. R. Knudsen, W. Meier, Differential Cryptanalysis of RC5, European Transactions on Telecommunications, Vol. 8, N. 5, pp.445–454, 1997.
L. R. Knudsen, Truncated and Higher Order Differentials, Lecture Notes in Computer Science 1008, Advances in Cryptology — Fast Software Encryption, pp.196–211, Springer-Verlag, 1994.
M. Matsui, Linear Cryptanalysis Method of DES Cipher, Lecture Notes in Computer Science 765, Advances in Cryptology — EUROCRYPT'93, pp.386–397, Springer-Verlag, 1994.
National Bureau of Standards, Data Encryption Standard, U.S. Department of Commerce, FIPS pub. 46, 1977.
R. L. Rivest, The RC5 Encryption Algorithm, Lecture Notes in Computer Science 1008, Fast Software Encryption, pp.86–96, Springer-Verlag, 1994.
A. A. SelÇuk, New Results in Linear Cryptanalysis of RC5, to appear, proceedings of Fast Software Encryption, 1998.
Y. L. Yin, The RC5 Encryption Algorithm: Two Years On, RSA Laboratories' CryptoBytes, Vol. 2, No. 3, pp.14–16, 1997.
Author information
Authors and Affiliations
Editor information
Rights and permissions
Copyright information
© 1998 Springer-Verlag Berlin Heidelberg
About this paper
Cite this paper
Biryukov, A., Kushilevitz, E. (1998). Improved cryptanalysis of RC5. In: Nyberg, K. (eds) Advances in Cryptology — EUROCRYPT'98. EUROCRYPT 1998. Lecture Notes in Computer Science, vol 1403. Springer, Berlin, Heidelberg. https://doi.org/10.1007/BFb0054119
Download citation
DOI: https://doi.org/10.1007/BFb0054119
Published:
Publisher Name: Springer, Berlin, Heidelberg
Print ISBN: 978-3-540-64518-4
Online ISBN: 978-3-540-69795-4
eBook Packages: Springer Book Archive