Cryptology ePrint Archive: Report 2018/390

MILP-based Differential Attack on Round-reduced GIFT

Baoyu Zhu and Xiaoyang Dong and Hongbo Yu

Abstract: At Asiacrypt 2014, Sun et al. proposed a MILP model to search differential characteristics for bit-oriented block ciphers. In this paper, we improve this model to search differential characteristics of GIFT, a new lightweight block cipher proposed at CHES 2017. GIFT has two versions, namely GIFT-64 and GIFT-128. For GIFT-64, we find the best 12 rounds differential characteristic with our MILP-based model and give a key-recovery attack on 19 rounds GIFT-64. For GIFT-128, we find a 18 rounds differential characteristic and give the first attack on 23 rounds GIFT-128.

Category / Keywords: secret-key cryptography

Date: received 29 Apr 2018, last revised 29 Jun 2018

Contact author: zhuby16 at mails tsinghua edu cn

Available format(s): PDF | BibTeX Citation

Version: 20180629:082753 (All versions of this report)

Short URL: ia.cr/2018/390


[ Cryptology ePrint archive ]