Finding an internal state of RC4 stream cipher

  • Authors:
  • Violeta Tomašević;Slobodan Bojanić;Octavio Nieto-Taladriz

  • Affiliations:
  • Institute of Mihajlo Pupin, Volgina 15, 11060 Belgrade, Serbia and Montenegro;Universidad Politécnica de Madrid, Departamento de Ingeniería Electrónica, Ciudad Universitaria s/n, 28040 Madrid, Spain;Universidad Politécnica de Madrid, Departamento de Ingeniería Electrónica, Ciudad Universitaria s/n, 28040 Madrid, Spain

  • Venue:
  • Information Sciences: an International Journal
  • Year:
  • 2007

Quantified Score

Hi-index 0.07

Visualization

Abstract

The RC4 is a stream cipher widely deployed in software applications due to its simplicity and efficiency. The paper presents a cryptanalytic attack that employs the tree representation of this cipher and introduces an abstraction in the form of general conditions for managing the information about its internal state. In order to find the initial state, the tree of general conditions is searched applying the hill-climbing strategy. The complexity of this attack is lower than that of an exhaustive search. The attack is derived from a general cryptanalytic approach for a class of table-shuffling ciphers, whose next-state function permutes the table entries. Incorporating the general conditions in the existing backtracking algorithm, the estimated complexity of the cryptanalytic attack is decreased below the best published result but the RC4 still remains a quite secure cipher in practice.