Differential Fault Analysis on KeeLoq and SHACAL-1
Chao Li · Journal of Wuhan University · 2008
This paper studies the security of two block ciphers KeeLoq and SHACAL-1,which are based-on Unbalanced Feistel Structure,against Differential Fault Analysis.It is shown that for KeeLoq,theoretically we can obtain 1 bit key through 11 faulty ciphertexts on average using bit-model.Considering the word-model for SHACAL-1,we only need about 6 faulty ciphertexts to get 32 bit key.The results imply that the above two block ciphers are not immune against Differential Fault Analysis.