Ciphertext-Only Fault Analysis of the LBlock Lightweight Cipher

Li Wei1,2,3,4, Wu Yixin1, Gu Dawu2, Cao Shan1, Liao Linfeng1, Sun Li1, Liu Ya5, Liu Zhiqiang2   

  1. 1(School of Computer Science and Technology, Donghua University, Shanghai 201620);2(Department of Computer Science and Engineering, Shanghai Jiao Tong University, Shanghai 200240);3(Shanghai Key Laboratory of Scalable Computing and Systems (Shanghai Jiao Tong University), Shanghai 200240);4(Shanghai Key Laboratory of Integrate Administration Technologies for Information Security (Shanghai Jiao Tong University), Shanghai 200240);5(Department of Computer Science and Engineering, University of Shanghai for Science and Technology, Shanghai 200093)
  • Online:2018-10-01

Abstract: The lightweight cipher LBlock was proposed at ANCS in 2011. It has the structure of Feistel and is widely applied in the security of Internet of things (IoT). In this paper, a cipher-text fault analysis for LBlock cipher by injecting faults is proposed, and it is analyzed by 6 distinguishers in the last but 3 rounds. On the basis of original distinguishers as SEI, GF, GF-SEI, MLE, we propose GF-MLE and MLE-SEI distinguishers as new distinguishers. The simulation experiments show that the secret key can be recovered with over 99% success probability in a short period of time, and these two new distinguishers can not only improve the attacking efficiency, but also decrease the number of faults. This shows that the ciphertext-only fault analysis poses a great threat to the security of LBlock cipher.

Key words: lightweight cipher, LBlock, ciphertext-only fault analysis, Internet of things (IoT), cryptanalysis

