Question: Consider a new block cipher, DES 2 , that consists of only two rounds of the DES block cipher. DES 2 has the same block

Consider a new block cipher, DES2, that consists of only two rounds of the DES block cipher. DES2 has the same block and key size as DES. For this question, you should consider the DES F function as a black box that takes two inputs, a 32-bit data segment, and a 48-bit round key, and produces a 32-bit output. Using the chosen-plaintext attack (CPA) without any restrictions on the number of oracle calls. a) Give an algorithm to recover the 48-bit round keys for round 1() and round 2(). Your algorithm should have fewer operations than the exhaustive key search for DES2. b) Can your algorithm be converted into a distinguishing attack against DES2, i.e., an attack that distinguishes DES2 from a random permutation?

Step by Step Solution

There are 3 Steps involved in it

1 Expert Approved Answer
Step: 1 Unlock blur-text-image
Question Has Been Solved by an Expert!

Get step-by-step solutions from verified subject matter experts

Step: 2 Unlock
Step: 3 Unlock

Students Have Also Explored These Related Databases Questions!