A Linearization Attack on the Bluetooth Key Stream Generator

Frederik Armknecht · MADOC (University of Mannheim) · 2002

In this paper we propose an attack on the key stream generator underlying the encryption system E0 used in the Bluetooth speci cation. We show that the initial value can be recovered by solving a system of nonlinear equations of degree 4 over the nite eld GF(2). This system of equations can be transformed by linearization into a system of linear equations with at most 2 unknowns. To our knowledge, this is the best attack on the key stream generator underlying the E0 yet.

Read the paper · More papers on PaperTik