A framework for chosen IV statistical analysis of stream ciphers

  • Authors:
  • Håkan Englund;Thomas Johansson;Meltem Sönmez Turan

  • Affiliations:
  • Dept. of Electrical and Information Technology, Lund University, Sweden;Dept. of Electrical and Information Technology, Lund University, Sweden;Institute of Applied Mathematics, METU, Turkey

  • Venue:
  • INDOCRYPT'07 Proceedings of the cryptology 8th international conference on Progress in cryptology
  • Year:
  • 2007

Quantified Score

Hi-index 0.00

Visualization

Abstract

Saarinen recently proposed a chosen IV statistical attack, called the d-monomial test, and used it to find weaknesses in several proposed stream ciphers. In this paper we generalize this idea and propose a framework for chosen IV statistical attacks using a polynomial description. We propose a few new statistical attacks, apply them on some existing stream cipher proposals, and give some conclusions regarding the strength of their IV initialization. In particular, we experimentally detected statistical weaknesses in some state bits of Grain-128 with full IV initialization as well as in the keystream of Trivium using an initialization reduced to 736 rounds from 1152 rounds. We also propose some stronger alternative initialization schemes with respect to these statistical attacks.