Title
An Extended Ctrt For Aes-256
Abstract
At CRYPTO 2000, Desai proposed a simple and faster AONT based on the CTR mode of encryption (called, CTRT) and proved its security in the ideal cipher model. Though AES-128 whose key length k = 128 and block length l = 128 can be used in CTRT as a block cipher, AES-256 cannot be used in CTRT due to its intrinsic restriction of k <= l. According to a recent ECRYPT-CSA report, AES-256 is strongly recommended rather than AES-128 for long term protection (security for thirty to fifty years) and post-quantum security. In this paper, we propose an extended CTRT (named as XCTRT) suitable for AES-256. By thoroughly evaluating all the tricky cases, we prove that XCTRT is secure in the ideal cipher model under the same AONT security definition of Desai. Also, we discuss the security result of XCTRT in concrete parameter settings. After showing performance measurements of XCTRT, we can say that our XCTRT has high speed encoding/decoding performance and is quite practical to be deployed in the real-world applications (e.g., cloud storage service).
Year
DOI
Venue
2019
10.1007/978-3-030-39303-8_7
INFORMATION SECURITY APPLICATIONS, WISA 2019
Keywords
Field
DocType
AONT, CTRT, AES, Security proof, Implementation, Performance evaluation
Software engineering,Computer security,Advanced Encryption Standard,Computer science
Conference
Volume
ISSN
Citations 
11897
0302-9743
0
PageRank 
References 
Authors
0.34
0
8
Name
Order
Citations
PageRank
Seonghan Shin15710.15
Shota Yamada29418.10
Goichiro Hanaoka3910101.53
Yusuke Ishida400.34
Atsushi Kunii500.34
Junichi Oketani600.34
Shimpei Kunii700.34
Kiyoshi Tomomura800.34