Improving Implementable MeetintheMiddle Attacks by Orders of Magnitude
 Paul C. van Oorschot,
 Michael J. Wiener
 … show all 2 hide
Abstract
Meetinthemiddle attacks, where problems and the secrets being sought are decomposed into two pieces, have many applications in cryptanalysis. A wellknown such attack on doubleDES requires 2^{56} time and memory; a naive key search would take 2^{112} time. However, when the attacker is limited to a practical amount of memory, the time savings are much less dramatic. For n the cardinality of the space that each half of the secret is chosen from (n=2^{56} for doubleDES), and w the number of words of memory available for an attack, a technique based on parallel collision search is described which requires O \( (\sqrt {n/ w} ) \) times fewer operations and O(n/w) times fewer memory accesses than previous approaches to meetinthemiddle attacks. For the example of doubleDES, an attacker with 16 Gbytes of memory could recover a pair of DES keys in a knownplaintext attack with 570 times fewer encryptions and 3.7×10^{6} times fewer memory accesses compared to previous techniques using the same amount of memory.
 Title
 Improving Implementable MeetintheMiddle Attacks by Orders of Magnitude
 Book Title
 Advances in Cryptology — CRYPTO '96
 Book Subtitle
 16th Annual International Cryptology Conference Santa Barbara, California, USA August 18–22, 1996 Proceedings
 Book Part
 Cryptanalysis II:
 Pages
 pp 229236
 Copyright
 1996
 DOI
 10.1007/3540686975_18
 Print ISBN
 9783540615125
 Online ISBN
 9783540686972
 Series Title
 Lecture Notes in Computer Science
 Series Volume
 1109
 Series ISSN
 03029743
 Publisher
 Springer Berlin Heidelberg
 Copyright Holder
 SpringerVerlag Berlin Heidelberg
 Additional Links
 Topics
 Keywords

 Meetinthemiddle attack
 parallel collision search
 cryptanalysis
 DES
 low Hamming weight exponents
 Industry Sectors
 eBook Packages
 Editors

 Neal Koblitz ^{(4)}
 Editor Affiliations

 4. Department of Mathematics Seattle, University of Washington
 Authors

 Paul C. van Oorschot ^{(5)}
 Michael J. Wiener ^{(5)}
 Author Affiliations

 5. BellNorthern Research, P.O. Box 3511, Station C, Ottawa, Ontario, K1Y 4H7, Canada
