Time-Memory-Key tradeoff attacks?
D. J. Bernstein
djb at cr.yp.to
Wed Jul 6 02:50:42 EDT 2005
My paper ``Understanding brute force'' explains an attack with a much
better price-performance ratio than the attack described by Biryukov:
http://cr.yp.to/talks.html#2005.05.27
http://cr.yp.to/papers.html#bruteforce
Biryukov's central point regarding key amortization was made earlier
(and, I think, more clearly) in my paper. My paper also analyzes the
merits of various defenses against the attack.
---D. J. Bernstein, Associate Professor, Department of Mathematics,
Statistics, and Computer Science, University of Illinois at Chicago
---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo at metzdowd.com
More information about the cryptography
mailing list