A linear distinguishing attack on SCREAM

Thomas Johansson, Alexander Maximov

Research output: Contribution to journalArticlepeer-review

Abstract

A linear distinguishing attack on the stream cipher Scream is proposed. When the keystream is of length 2(98) words, the distinguisher has a detectable advantage. When the keystream length is around 2(120) the advantage is very close to 1. This shows certain weaknesses of Scream. In the process, the paper introduces new general ideas on how to improve the performance of linear distinguishing attacks on stream ciphers.
Original languageEnglish
Pages (from-to)3127-3144
JournalIEEE Transactions on Information Theory
Volume53
Issue number9
Publication statusPublished - 2007

Subject classification (UKÄ)

  • Electrical Engineering, Electronic Engineering, Information Engineering

Free keywords

  • advantage
  • distinguishing attack
  • Scream
  • linear cryptanalysis

Fingerprint

Dive into the research topics of 'A linear distinguishing attack on SCREAM'. Together they form a unique fingerprint.

Cite this