Cryptology ePrint Archive: Report 2013/301

Impossible Differential-Linear Cryptanalysis of Reduced-Round CLEFIA-128

Zheng Yuan and Xian Li and Haixia Liu

Abstract: CLEFIA is a 128-bit block cipher proposed by Sony Corporation in 2007. Our paper introduces a new chosen text attack, impossible differential-linear attack, on iterated cryptosystems. The attack is efficient for 16-round CLEFIA with whitening keys. In the paper, we construct a 13-round impossible differential-linear distinguisher. Based on the distinguisher, we present an effective attack on 16-round CLEFIA-128 with data complexity of $2^{115.52}$, recovering 96-bit subkeys in total. Besides, the results of 15-round CLEFIA-128 are given in the Appendix C. Our attack can also applied to CLEFIA-192 and CLEFIA-256.

Category / Keywords: CLEFIA, impossible differential-linear cryptanalysis, impossible differential cryptanalysis, linear approximation

Date: received 20 May 2013, last revised 15 Jul 2013

Contact author: zyuan at tsinghua edu cn

Available format(s): PDF | BibTeX Citation

Version: 20130716:015147 (All versions of this report)

Short URL:

Discussion forum: Show discussion | Start new discussion

[ Cryptology ePrint archive ]