Published January 1, 2017
| Version v1
Conference paper
Open
Cryptanalysis of QTL Block Cipher
Creators
- 1. TUBITAK BILGEM UEKAE, PK 74, TR-41470 Gebze, Kocaeli, Turkey
- 2. Sakarya Univ, Dept Math, Fac Arts & Sci, Adapazari, Sakarya, Turkey
Description
QTL is an ultra-lightweight block cipher designed for extremely constrained devices. The cipher has two versions, QLT-64 and QTL-128 supporting key lengths of 64 and 128 bits, respectively. In this paper, we present the first third party cryptanalysis of QTL. We first introduce related key distinguishers for full versions of the cipher. We propose attacks on full QTL in single key model by using the related key distinguishers. With these attacks we are able to reduce the security of QTL-64 and QTL-128 by 16 bits. We also enumerate 2(48) weak keys and propose a practical key recovery attack on full QTL-64 for these keys. This attack requires 2(16) data and recovers the key in a time complexity of 2(32) encryptions. We also give some observations disprove designers' claims about number of active S-boxes and actual value of differential branch number.
Files
bib-f38d20d8-dc8c-4c7d-836d-675707b1d203.txt
Files
(126 Bytes)
| Name | Size | Download all |
|---|---|---|
|
md5:6202e250397ab50702f06ab25860c793
|
126 Bytes | Preview Download |