A linear distinguishing attack on SCREAM

Research output: Contribution to journalArticle

Abstract

A linear distinguishing attack on the stream cipher Scream is proposed. When the keystream is of length 2(98) words, the distinguisher has a detectable advantage. When the keystream length is around 2(120) the advantage is very close to 1. This shows certain weaknesses of Scream. In the process, the paper introduces new general ideas on how to improve the performance of linear distinguishing attacks on stream ciphers.

Details

Authors
Organisations
Research areas and keywords

Subject classification (UKÄ) – MANDATORY

  • Electrical Engineering, Electronic Engineering, Information Engineering

Keywords

  • advantage, distinguishing attack, Scream, linear cryptanalysis
Original languageEnglish
Pages (from-to)3127-3144
JournalIEEE Transactions on Information Theory
Volume53
Issue number9
Publication statusPublished - 2007
Publication categoryResearch
Peer-reviewedYes