PulseExploreJournal ClubDebatesTrendingResearchersJournals
Instagram
HomeExploreJournal ClubTrending
Synapse
⌘+K
Synapse
October 24, 2016138 citationsOpen Access

On the Practical (In-)Security of 64-bit Block Ciphers

View Full Paper
KBKarthikeyan BhargavanGLGaëtan Leurent

Key Points

Key points are not available for this paper at this time.

Abstract

While modern block ciphers, such as AES, have a block size of at least 128 bits, there are many 64-bit block ciphers, such as 3DES and Blowfish, that are still widely supported in Internet security protocols such as TLS, SSH, and IPsec. When used in CBC mode, these ciphers are known to be susceptible to collision attacks when they are used to encrypt around 232 blocks of data (the so-called birthday bound). This threat has traditionally been dismissed as impractical since it requires some prior knowledge of the plaintext and even then, it only leaks a few secret bits per gigabyte. Indeed, practical collision attacks have never been demonstrated against any mainstream security protocol, leading to the continued use of 64-bit ciphers on the Internet.

Ask AI
Helpful
Bookmark
Share
View Full Paper

Cite This Study

Bhargavan et al. (2016) studied this question.

synapsesocial.com/papers/6a2296dd26d06b648c0df307https://doi.org/10.1145/2976749.2978423
Ask AI
Helpful
Bookmark
Share
View Full Paper