Paper 2025/158

Optimizing Key Recovery in Impossible Cryptanalysis and Its Automated Tool

Haoyang Wang, Shanghai Jiao Tong University
Jianing Zhang, Shanghai Jiao Tong University
Abstract

Key recovery for impossible differential (ID) cryptanalysis has seen few systematic advancements in nearly a decade, while the recent resurgence of impossible boomerang (IB) attacks has produced several powerful but disparate strategies. This, combined with the high complexity of existing tools for finding IB distinguishers, highlights the need for a unified optimization framework. In this paper, we address these gaps by introducing the Impossible Upper and Lower Boomerang Connectivity Tables (iUBCT/iLBCT), new lightweight tools for finding two-round contradictions. We then modernize key recovery by providing the first formal analysis of probabilistic extensions and by adapting the generic key guessing framework from rectangle cryptanalysis, which enables a systematic search for attacks with optimal complexities, particularly for memory. These techniques are integrated into a new Mixed-Integer Linear Programming (MILP)-based tool, leading to a suite of improved attacks on SKINNY, SKINNYee, Midori, and Deoxys-BC. Our results include the first 30-round attack on SKINNYee, extending the state of the art by one round. For other targets, our framework yields attacks with substantial memory and time reductions. In particular, we reduce the complexity of the best previous ID attack on SKINNY-128-384 by factors of up to $2^{131}$ (memory) and $2^{9}$ (time), and the best previous IB attack on Deoxys-BC-384 by factors of up to $2^{56}$ (memory) and $2^{25}$ (time). Many of these results provide new time-memory-data trade-offs, often achieving complexity reductions at the cost of moderately increased data requirements.

Metadata
Available format(s)
PDF
Category
Attacks and cryptanalysis
Publication info
Published elsewhere. Designs, Codes and Cryptography
DOI
https://doi.org/10.1007/s10623-025-01791-w
Keywords
Impossible differential cryptanalysisImpossible boomerang cryptanalysisSKINNYSKINNYeeMidoriDeoxys-BC
Contact author(s)
haoyang wang @ sjtu edu cn
zhangjn @ sjtu edu cn
History
2026-02-14: last of 2 revisions
2025-02-02: received
See all versions
Short URL
https://ia.cr/2025/158
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2025/158,
      author = {Haoyang Wang and Jianing Zhang},
      title = {Optimizing Key Recovery in Impossible Cryptanalysis and Its Automated Tool},
      howpublished = {Cryptology {ePrint} Archive, Paper 2025/158},
      year = {2025},
      doi = {https://doi.org/10.1007/s10623-025-01791-w},
      url = {https://eprint.iacr.org/2025/158}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.