On the security of tweakable modes of operation: TBC and TAE

  • Authors:
  • Peng Wang;Dengguo Feng;Wenling Wu

  • Affiliations:
  • State Key Laboratory of Information Security, Graduate School of Chinese Academy of Sciences, Beijing, P. R. China;State Key Laboratory of Information Security, Graduate School of Chinese Academy of Sciences, Beijing, P. R. China;State Key Laboratory of Information Security, Institution of Software of Chinese Academy of Sciences, Beijing, P. R. China

  • Venue:
  • ISC'05 Proceedings of the 8th international conference on Information Security
  • Year:
  • 2005

Quantified Score

Hi-index 0.00

Visualization

Abstract

We investigate the security of two tweakable-blockcipher-based modes TBC and TAE proposed in [13]. Our results show that: (1) The TBC encryption mode, whether randomized or stateful, is secure in the sense of indistinguishability from random bits; (2) Theorem 3 in [13] is wrong. A simple counterexample against the authenticity of TAE is presented, which shows that the secure tweakable blockcipher against chosen plaintext attack is not sufficient for the security of the TAE mode.