Practical Attacks on Full-round FRIET

FRIET is a duplex-based authenticated encryption scheme proposed at EUROCRYPT 2020. It follows a novel design approach for built-in countermeasures against fault attacks. By a judicious choice of components, the designers propose the permutation FRIET-PC that can be used to build an authenticated e...

Full description

Bibliographic Details
Main Authors: Senpeng Wang, Dengguo Feng, Bin Hu, Jie Guan, Tairong Shi
Format: Article
Language:English
Published: Ruhr-Universität Bochum 2022-12-01
Series:IACR Transactions on Symmetric Cryptology
Subjects:
Online Access:https://tosc.iacr.org/index.php/ToSC/article/view/9973
_version_ 1811205987971891200
author Senpeng Wang
Dengguo Feng
Bin Hu
Jie Guan
Tairong Shi
author_facet Senpeng Wang
Dengguo Feng
Bin Hu
Jie Guan
Tairong Shi
author_sort Senpeng Wang
collection DOAJ
description FRIET is a duplex-based authenticated encryption scheme proposed at EUROCRYPT 2020. It follows a novel design approach for built-in countermeasures against fault attacks. By a judicious choice of components, the designers propose the permutation FRIET-PC that can be used to build an authenticated encryption cipher denoted as FRIET-AE. And FRIET-AE provides a 128-bit security claim for integrity and confidentiality. In this paper, we research the propagation of pairs of differences and liner masks through the round function of FRIET-PC. For the full-round FRIET-PC, we can construct a differential distinguisher whose probability is 1 and a linear distinguisher whose absolute value of correlation is 1. Moreover, we use the differential distinguisher with probability 1 to construct a set consisting of valid tags and ciphertexts which are not created by legal users. This breaks FRIET-AE’s security claim for integrity and confidentiality. As far as we know, this is the first practical attack that threatens the security of FRIET-AE.
first_indexed 2024-04-12T03:40:35Z
format Article
id doaj.art-0ef57e7c342a4a5d8741cbf6e5b60982
institution Directory Open Access Journal
issn 2519-173X
language English
last_indexed 2024-04-12T03:40:35Z
publishDate 2022-12-01
publisher Ruhr-Universität Bochum
record_format Article
series IACR Transactions on Symmetric Cryptology
spelling doaj.art-0ef57e7c342a4a5d8741cbf6e5b609822022-12-22T03:49:18ZengRuhr-Universität BochumIACR Transactions on Symmetric Cryptology2519-173X2022-12-012022410.46586/tosc.v2022.i4.105-119Practical Attacks on Full-round FRIETSenpeng Wang0Dengguo Feng1Bin Hu2Jie Guan3Tairong Shi4State Key Laboratory of Cryptology, Beijing, China; Information Engineering University, Zhengzhou, ChinaState Key Laboratory of Cryptology, Beijing, ChinaInformation Engineering University, Zhengzhou, ChinaInformation Engineering University, Zhengzhou, ChinaInformation Engineering University, Zhengzhou, China FRIET is a duplex-based authenticated encryption scheme proposed at EUROCRYPT 2020. It follows a novel design approach for built-in countermeasures against fault attacks. By a judicious choice of components, the designers propose the permutation FRIET-PC that can be used to build an authenticated encryption cipher denoted as FRIET-AE. And FRIET-AE provides a 128-bit security claim for integrity and confidentiality. In this paper, we research the propagation of pairs of differences and liner masks through the round function of FRIET-PC. For the full-round FRIET-PC, we can construct a differential distinguisher whose probability is 1 and a linear distinguisher whose absolute value of correlation is 1. Moreover, we use the differential distinguisher with probability 1 to construct a set consisting of valid tags and ciphertexts which are not created by legal users. This breaks FRIET-AE’s security claim for integrity and confidentiality. As far as we know, this is the first practical attack that threatens the security of FRIET-AE. https://tosc.iacr.org/index.php/ToSC/article/view/9973FRIETAuthenticated EncryptionDifferential AttackLinear AttackFault Injection
spellingShingle Senpeng Wang
Dengguo Feng
Bin Hu
Jie Guan
Tairong Shi
Practical Attacks on Full-round FRIET
IACR Transactions on Symmetric Cryptology
FRIET
Authenticated Encryption
Differential Attack
Linear Attack
Fault Injection
title Practical Attacks on Full-round FRIET
title_full Practical Attacks on Full-round FRIET
title_fullStr Practical Attacks on Full-round FRIET
title_full_unstemmed Practical Attacks on Full-round FRIET
title_short Practical Attacks on Full-round FRIET
title_sort practical attacks on full round friet
topic FRIET
Authenticated Encryption
Differential Attack
Linear Attack
Fault Injection
url https://tosc.iacr.org/index.php/ToSC/article/view/9973
work_keys_str_mv AT senpengwang practicalattacksonfullroundfriet
AT dengguofeng practicalattacksonfullroundfriet
AT binhu practicalattacksonfullroundfriet
AT jieguan practicalattacksonfullroundfriet
AT tairongshi practicalattacksonfullroundfriet