The Problem of State Recovering Attack Against Trivium

Shiyong Zhang, Gongliang Chen, Jianhua Li · 2016

Trivium is a notable light-weight synchronous stream cipher submitted to the European eSTREAM project in April 2005.State recovering attack is the best known attack to Trivium.In this paper, we study the structure of Trivium and point out the equations used in the state recovering attack are linearly dependent.The number of the equations is not enough to derive the exact solution.Then the revisional state recovering attack will be given to correct the problem of origin attack.We show that the internal state of Trivium will be recovered in time around 88.8 2 , and the keystream has the length of 57.8 2 .Therefore, the revisional attack is still faster than the exhaustive search

Read the paper · More papers on PaperTik