HIGHT is a 32-round block cipher with a 64-bit block size and a 128-bit user key, which was proposed at CHES ’06 for low-resource applications like RFID. In this paper, we present an impossible differential attack on 25-round HIGHT, a related-key rectangle attack on 26-round HIGHT, and finally a related-key impossible differential attack on 28-round HIGHT. Our result suggests that the safety margin of HIGHT decreases from the originally expected thirteen rounds to about four rounds now.
|Name||Lecture Notes in Computer Science|
|Conference||conference; ICISC 2007, Seoul, Korea; 2007-11-29; 2007-11-30|
|Period||29/11/07 → 30/11/07|
|Other||ICISC 2007, Seoul, Korea|