Question: Consider a new block cipher, DES 2 , that consists of only two rounds of the DES block cipher. DES 2 has the same block
Consider a new block cipher, DES that consists of only two
rounds of the DES block cipher. DES has the same block and
key size as DES. For this question, you should consider the DES
function as a black box that takes two inputs, a bit data
segment, and a bit round key, and produces a bit output.
Using the chosenplaintext attack CPA without any restrictions
on the number of oracle calls.
a Give an algorithm to recover the bit round keys for
round and round Your algorithm should have
fewer operations than the exhaustive key search for DES
b Can your algorithm be converted into a distinguishing
attack against DES ie an attack that distinguishes DES
ciphertext
from a random permutation?
Step by Step Solution
There are 3 Steps involved in it
1 Expert Approved Answer
Step: 1 Unlock
Question Has Been Solved by an Expert!
Get step-by-step solutions from verified subject matter experts
Step: 2 Unlock
Step: 3 Unlock
