Sommaire

  • Cet exposé a été présenté le 09 avril 2010.

Description

  • Orateur

    Vincent Rijmen - University of Graz

In a recent series of papers, Alex Biryukov, Dmitry Khovratovich (et al.) presented a number of related-key attacks on AES and reduced-round versions of AES. The most impressive of these were presented at Asiacrypt 2009: related-key attacks against the full AES-256 and AES-192. The publication of these attacks has led some people to question the security of AES.<br/> While we agree that the related-key attacks are valid attacks and they could have been avoided in the design, we give arguments why their practical relevance is limited.<br/> In this presentation we discuss the applicability of these attacks, and of related-key attacks in general. We model the access of the attacker to the key in the form of key access schemes and remind the listeners of the following two facts. First, as shown by Mihir Bellare and Tadayoshi Kohno, there are key access schemes that are inherently insecure. We call those key access schemes unsound and propose related-key attacks should only be considered with respect to sound key access schemes. Second, as shown by a.o. Eli Biham and Serge Vaudenay, even the presence of a sound key access scheme inevitably leads to erosion of security.

Prochains exposés

  • Schéma de signature à clé publique : Frobénius-UOV

    • 29 mai 2026 (13:45 - 14:45)

    • IRMAR - Université de Rennes - Campus Beaulieu Bat. 22, RDC, Rennes - Amphi Lebesgue

    Orateur : Gilles Macario-Rat - Orange

    L'exposé présente un schéma de signature à clé publique post-quantique inspiré du schéma UOV et introduisant un nouvel outil : les formes de Frobénius. L'accent est mis sur le rôle et les propriétés des formes de Frobénius dans ce nouveau schéma : la simplicité de description, la facilité de mise en oeuvre et le gain inédit sur les tailles de signature et de clé qui bat RSA-2048 au niveau de[…]
  • Yoyo tricks with a BEANIE

    • 05 juin 2026 (13:45 - 14:45)

    • IRMAR - Université de Rennes - Campus Beaulieu Bat. 22, RDC, Rennes - Amphi Lebesgue

    Orateur : Xavier Bonnetain - Inria

    TBD
    • Cryptography

    • Symmetrical primitive

Voir les exposés passés