Quick Navigation

Topics

Quantum Machine Learning Entanglement Theory Quantum Correlations Quantum Simulation

Security of Key-Alternating Ciphers: Quantum Lower Bounds and Quantum Walk Attacks

arXiv
Authors: Chen Bai, Mehdi Esmaili, Atul Mantri

Year

2024

Paper ID

6290

Status

Preprint

Abstract Read

~2 min

Abstract Words

269

Citations

N/A

Abstract

We study the quantum security of key-alternating ciphers (KAC), a natural multi-round generalization of the Even--Mansour construction. KAC abstracts the round structure of practical block ciphers as public permutations interleaved with key XORs. The 1-round KAC or EM setting already highlights the power of quantum superposition access: EM is secure against classical and Q1 adversaries (quantum access to the public permutation), but insecure in the Q2 model. The security of multi-round KACs remain largely unexplored; in particular, whether the quantum-classical separation extends beyond a single round had remained open. 1) Quantum Lower Bounds. We prove security of the t-round KAC against a non-adaptive adversary in both the Q1 and Q2 models. In the Q1 model, any distinguiser requires Ω\(2^{frac{tn}{2t+1}}\) oracle queries to distinguish the cipher from a random permutation, whereas classically any distinguisher needs Ω\(2^{frac{tn}{t+1}}\) queries. As a corollary, we obtain a Q2 lower bound of Ω\(2^{frac{(t-1\)n}{2t}}) quantum queries. Thus, for t geq 2, the exponential Q1-Q2 gap collapses in the non-adaptive setting, partially resolving an open problem posed by Kuwakado and Morii (2012). Our proofs develop a controlled-reprogramming framework within a quantum hybrid argument, sidestepping the lack of quantum recording techniques for permutation-based ciphers; we expect this framework to be useful for analyzing other post-quantum symmetric primitives. 2) Quantum Key-Recovery Attack. We give the first non-trivial quantum key-recovery algorithm for t-round KAC in the Q1 model. It makes O\(2αn\) queries with α= frac{t(t+1)}{(t+1)2 + 1}, improving on the best known classical bound of O\(2α' n\) with α' = frac{t}{t+1}. The algorithm adapts quantum walk techniques to the KAC structure.

Why This Paper Matters

  • This paper contributes to the Quantum Machine Learning research area in the Quantum Articles archive.
  • It adds a 2024 reference point for readers tracking recent quantum research.
  • We study the quantum security of key-alternating ciphers (KAC), a natural multi-round generalization of the Even--Mansour construction.

Paper Tools

Become a member to use research tools

Sign in to open papers, visit source links, share, cite, compare, copy DOI links, request category corrections, and build your reading list.

Show Paper arXiv Publisher Share Cite This Paper Copy URL Compare Copy DOI Add to Reading List Category Correction Request

References & Citation Signals

Local Citation Graph (Related-Paper Links)

Current Paper #6290 #68993 Tomography of quantum states wi... #68978 Repair Before Veto, When Repair... #69034 Hardware-aware Low-latency Quan... #69027 Computational Superiority of No...

External citation index: OpenAlex citation signal

Community Reactions

Quick sentiment from readers on this paper.

Score: 0
Likes: 0 Dislikes: 0

Sign in to react to this paper.

Discussion & Reviews (Moderated)

Average Rating: 0.0 / 5 (0 ratings)

No written reviews yet.