IEEE Access (Jan 2020)
MILP-Based Differential Cryptanalysis on Round-Reduced Midori64
Abstract
Mixed integer linear programming (MILP) model was presented by Sun et al. at Asiacrypt 2014 to search for differential characteristics of block ciphers. Based on this model, it is easy to assess block ciphers against differential attack. In this paper, the MILP model is improved to search for differential trails of Midori64 which is a family of lightweight block ciphers provided by Banik et al. at Asiacrypt 2015. We find the best 5-round differential characteristics of Midori64 with MILP-based model, and the probabilities are $2^{-52}$ and $2^{-58}$ respectively. Based on these distinguishers, we give key recovery attacks on the 11-round reduced Midori64 with data complexities of $2^{55.6}$ and $2^{61.2}$ , and time complexities of $2^{109.35}$ and $2^{100.26}$ .
Keywords