2009 Reports :  Cryptology ePrint Archive Forum
Discussion forum for Cryptology ePrint Archive reports posted in 2009. Please put the report number in the subject.  
Goto Thread: PreviousNext
Goto: Forum ListMessage ListNew TopicSearchLog In
Posted by: Joe (IP Logged)
Date: 30 January 2009 11:20

For the Toyocrypt complexities, how is it possible to recover a 128-bit state given 4 (or 8) bits of keystream without brute-forcing the last 124 (or 120) bits?

Re: 2009/049
Posted by: Khoongming (IP Logged)
Date: 19 June 2009 01:51

Hi Joe,

Thanks for your question.

There was an error in a previous version of our paper. The number of keystream needed in the attack on Toyocrypt should be 128 bits from each of 4 (or 8) re-synchronizations, that is 512 (or 1024) bits in total.

This has been corrected in our latest version.


Re: 2009/049
Posted by: kristalpearce (IP Logged)
Date: 24 July 2009 19:17

I had the same concern, Thanks for the help!

Please log in for posting a message. Only registered users may post in this forum.