About
Community
Bad Ideas
Drugs
Ego
Erotica
Fringe
Society
Privacy
100 Ways to Disappear and Live Free
A Guide to Intelligence Collection Methods
A Study of Criminal History Records, as Maintained by the RCMP
A Theory of Information Warfare: Preparing for 2020
An Appraisal of the Technology of Political Control
Anonymity on the Web
Antisurveillance
Appeal Filed in Teenager vs. FBI Case
Beating The FBI
Big Brother's Little Helpers: Private Intelligence Networks
Biometric ID Cards
Bugs, Taps And Infiltrators: What To Do About Political Spying
Carnival Booth: Defeating Computer-Assisted Passenger Screening System
Carnivore FAQ
China's Golden Shield: Corporations and the Development of Surveillance Technology in China
Civil Liberties Under Threat
Cooperation of Telecommunications Providers with Law Enforcement
Cryptography: Policy and Technology Trends
Disabling CCTV / Video Cameras
Disabling Surveillence Video Cameras
EPIC Analysis of Draft Guidelines on Searching and Seizing Computers
EU Lawful Interception of Telecommunications
Eavesdropping On the Electromagnetic Emanations of Digital Equipment
Electronic Surveillance in a Digital Age
Email Privacy Law Review
European Union and FBI Launch Global Surveillance System
Executive Guide to the Protection of Information
Exposing The Global Surveillance System
Exposing the Global Surveillance System
FBI Investigates Domestic Activities to Identify Terrorists
Fingerprints
General Counterdrug Intelligence Plan
Gmail Bedfellows
Hiding Yourself
Homeless Tracking Fact Sheet
How COINTELPRO Helped Destroy the Movements of the 1960s
How Private Is My Credit Report?
How Tax Returns are Selected for Audit
How To Create A New Indentity
How To Get Lost
How to Get Anything on Anyone
IRS Cups It's Ear to Cordless Phones
IRS and Terrorist-Related Information Sharing
Identification, Anonymity and Pseudonymity in Consumer Transactions
Identification: A Move Towards the Future
Identity Cards: Frequently Asked Questions
Interception Capabilities 2000
Internet Security and Privacy for Activists and Citizens
Internet Security and Privacy for Activists and Citizens
Investigators Guide to Sources of Information
Is the NSA Sniffing Your Email?
Mail Surveillance
New Communications Technologies and Traditional Civil Liberties
Participating With Safety
Privacy Rights of BBS Users
Privacy or Service: Must We Be Forced to Choose?
Proof of Echelon?
Rebirth Methods In Post 9/11 USA
Recieve Your FBI File
Report of the Interception of Communications Commissioner for 2001
Schengen Information System: SIS II
Smart Cards: Opportunities for Public Sector Applications
Spook Words
Spy Secrets
Statements by the DCI and the NSA Director on Economic Spying
Surveillance Conference Overview
Testimony of Mark M. Ishikawa CEO BayTSP.com
The "Enemy Within": EU Plans the Surveillance of Protestors
The Group Trap
The Joy of Handles
The Libertarian Party Represents You
The Shocking Menace of Satellite Surveillance
The TEMPEST Method of Computer Data Interception!
The World of Surveillance
They Were Spying on Us: Detroit Police Red Squad
Touching Big Brother: How Biometric Technology will Fuse Flesh and Machine
U.S. Military Spying on Web Sites
UK ID Cards: Majority in Favor
UK National ID Cards - A Consultation
Using the Freedom of Information Act: Revised Edition
Watching the Watcher Watching You
Watching the Watchers: The Spanish Police
What To Do When They Ask For Your Social Security Number
Who's Afraid of Carnivore? Not Me!
Why Legal Action Should Be Taken for Installation of Surveillance Cameras in Public Places
Will We Be Under Total Surveillance?
Your Papers Please
Technology
register | bbs | search | rss | faq | about
meet up | add to del.icio.us | digg it

Mini-DES 6-Bit Blocks

The following "mini-DES" uses 6-bit blocks of data (see code table below) and 9 bits of key (the 9 bits are independent.)

It has the following structure:

L' = R
R' = L + S (R + K)

where S is

input output 000 011 001 111 010 000 011 100 100 101 101 001 110 110 111 010

where there are three stages in this algorithm.

The code table is:

000000 space 001000 H 010000 P 011000 X 000001 A 001001 I 010001 Q 011001 Y 000010 B 001010 J 010010 R 011010 Z 000011 C 001011 K 010011 S 011011 0 000100 D 001100 L 010100 T 011100 1 000101 E 001101 M 010101 U 011101 2 000110 F 001110 N 010110 V 011110 3 000111 G 001111 O 010111 W 011111 4

100000 . 101000 h 110000 p 111000 x 100001 a 101001 i 110001 q 111001 y 100010 b 101010 j 110010 r 111010 z 100011 c 101011 k 110011 s 111011 5 100100 d 101100 l 110100 t 111100 6 100101 e 101101 m 110101 u 111101 7 100110 f 101110 n 110110 v 111110 8 100111 g 101111 o 110111 w 111111 9

Example: Encode 'f' using key K = { 110, 101, 100 }

L0, R0 = 100, 110 L1, R1 = 110, 111 L2, R2 = 111, 110 L3, R3 = 110, 111

Problem:

Decipher the following: cvxrUXkl

(That is, 100011 110110 111000 111011 010101 011000 101011 101100))

The following pairs are known:

e -> 0 100101 -> 011011 t -> 5 110100 -> 111011 a -> Q 100001 -> 010001 o -> U 101111 -> 010101 space -> 2 000000 -> 011101

(b) Why is this system so weak? Could the security be improved by using more rounds (but all other things unchanged)? What is your suggestion to improve the security? Explain!

Hints:

Do all computations in GF(2^3) : { 001, 010, 100, 011, 110, 111, 101 } (GF(2^3)/x^3+x+1).

Express S as a y = f(x) = ax + b

Use the recursions for R' and L' to explicitly compute
L3 = g(L0, R0, K0, K1, K2)
R3 = h(L0, R0, K0, K1, K2)

Use the knowledge about the S-box and known plaintext/ciphertext pairs to determing g and h. Decipher the given ciphertet.

The Solution:

This took me somewhat more than 3 hours, because I had totally forgotten how to do arithmetic in GF(2^3), and had to create a multiplication table.

There is an error in the original problem, because the `r' in the ciphertext should be a `5'.

Anyway, the solution follows. If you don't like your fun spoiled, hit `n' now. (And I hope the ^L makes it.)

You sense the presence of spoilers --more--

The plaintext is "Victory."

The key is any of

K0   K1   K2
---------------
000  011  101
001  111  100
010  000  111
011  100  110
100  101  001
101  001  000
110  110  001
111  010  010
The S-box can be written as S(x) = 100x + 011.

The relation between L3, R3 and L0, R0, K0, K1, K2 is

L3 = 100L0 + 111R0 + 110K0 + 100K1 + 100
R3 = 111L0 + 101R0 + 001K0 + 110K1 + 100K2 + 110

from which you get, with one plaintext/ciphertext pair,

111 = 110K0 + 100K2
011 = 001K0 + 110K1 + 100K2

and the reverse relation from substituting any key from the above table is

L0 = 101L3 + 111R3 + 010
R0 = 111L3 + 100R3

Only one plaintext/ciphertext pair was needed for the solution, but the others were helpful in verifying some of the intermediate results.

I have used my own notation here, not the one in Bear Giles' .plan. A number like 101 means the polynomial 1x^2 + 0x + 1.

The system is so weak because the S-box is a linear function in GF(2^3). Composition of linear functions gives another linear function. More rounds won't help, since the resulting function will still be linear. Neither increasing nor decreasing the rank of the coefficient matrix will help, because all solutions (keys) are equivalent and will solve the cryptogram.

Suggestions:

a) Use the cipher in stream mode; otherwise, it's a simple monalphabetic which can be solved without arithmetic in GF(2^3) with a moderate amount of plaintext
b) Use a nonlinear S-box
c) Use longer keys (9 bits is too short)
d) Use a more complicated key schedule, reusing key bits

Suggestions b) and d) together will make an attack as the one used to break this particular system fail, and suggestion c) is needed to make exhaustive search infeasible, and suggestion a) should make it harder to get at plaintext/ciphertext pairs.

 
To the best of our knowledge, the text on this page may be freely reproduced and distributed.
 

totse.com certificate signatures
 
 
About | Community | Bad Ideas | Drugs | Ego | Erotica | Fringe | Society | Technology
Hot Topics