ã€ã¹ã©ãšã«ã®ç§åŠè
ãã·ã¢ã³ã»ã€ãŒãã³ïŒã·ã¢ã³ã»ã€ãŒãã³ïŒãšã€ãŒã·ã£ã€ã»ãã³ã¹ãŒã«ïŒã€ãŒã·ã£ã€ã»ãã³ã¹ãŒã«ïŒã¯1997幎ã«çåã«æã£ãã æå°éã§ã¯ãæå·æ¹åŒã®æ§é èŠçŽ ã®æ°ãæå³ããèä¹
æ§ã§ã¯ããã®æå·ã«å¯Ÿããæ»æã®è€éãã®ïŒæ£åŒã«ïŒäœãæšå®å€ãæå³ããŸããã 圌ããèšãããã«ãã«ããã®äžã§-蚌æå¯èœãªåŒ·åºŠãæã€æå°ã®ïŒä»æ¥ãŸã§ïŒãããã¯æå·ã®èª¬æã
åæ
çãªäœè«
çŸåšäœ¿çšãããŠãã
ã»ãšãã©ãã¹ãŠã®æå·åæšæºã¯
ãæ£åŒã«ã¯åŒ·åã§ã¯ãã
ãŸãã ã ããããè匱æ§ããŸãã¯åŒ±ç¹ããªãããšãä¿èšŒãã人ã¯ããŸããã ãã ããããã®æå·ãè§£èªããæ¹æ³ãã€ãŸã培åºçãªæ€çŽ¢ã®ææ°é¢æ°çãªè€éãã
倧å¹
ã«æžããæ¹æ³ã誰ããŸã çºæããŠããªãïŒãŸãã¯å°ãªããšãå
¬éããŠããªãïŒã ãã§ãã 察称æå·åãé察称æå·åãããã·ã¥åãªã©ãã»ãã¥ãªãã£ãšãã©ã€ãã·ãŒãæ¯ãã
ã»ãŒãã¹ãŠã®æå·åã¢ã«ãŽãªãºã ãéããšã
æ¯èŒçè€éãªåé¡ïŒé¢æ£å¯Ÿæ°åé¡ãªã©ïŒã解決ããããšã«ãªããŸãã 誰ããŸã
æ¯èŒçåçŽãªè§£æ±ºçãææ¡ããŠããªããããè€éã§ãã æéäœã§å¯Ÿæ°ãèšç®ããæ¹æ³ããŸãã¯å€é
åŒæéã§æ°å€ãå æ°åè§£ããæ¹æ³ãåŠã¶ãŸã§ïŒãŸãã¯ããã倧ããªéåã³ã³ãã¥ãŒã¿ãŒãæ§ç¯ãããŸã§ïŒãDHãšRSAã¯å®å®ããŠãããšèŠãªãããããŒã®ãããæ°ã®ã¿ãããŒãœãã«ã³ã³ãã¥ãŒã¿ãŒã®ãã¯ãŒã«æ¯äŸããŠå¢å ããŸãã
ãã¹ãŠã¯ãäžããè©äŸ¡ãååŸããæ¹æ³ããŸã ããããªãããã§ãã åã ã¡ãæ°åŠïŒç¹ã«æå·ïŒã§ã¯ãçŸããã¢ã€ãã¢ãæŽç·Žããã解決çã¯ããã»ã©å€ããªããäžãã蚌æãããæšå®ã¯ããã«å°ãªãã ç§ã®èãã§ã¯ãããã§èæ
®ãããæå·ã¯äº€å·®ç¹ã«è©²åœããŸããããã¯å¯èœãªéãåçŽã§ãããšåæã«ã圢åŒçã«èæ§ããããŸãã
ãã€ãºã®æ¡ä»¶ä»ã確çåŒãšåæ°ã®åçç®è¡ãããè€éãªãã®ã¯å«ãŸããŠããŸãããããã®åºçç©ã¯æºåã®ã§ããŠããªãèªè
åãã®èžè¡äœåã§ã¯ãªãããšãããã«èŠåããŸãã
çµéšã®æµ
ãèªè
ã¯ãæå·ã®èšèšã®èª¬æã«æºè¶³ãããŸãŸã§ããããã®èä¹
æ§ã®å³å¯ãªèšŒæ ã¯ãæ°åŠã®å°éå®¶ãšçã®æå¥œå®¶ã®ããã«ããã«äžããããŸãã
[EM97]ã®ã€ã¹ã©ãšã«ã®åŠè
ã§ããShimon EvenãšYishay Mansourã¯ãã©ã³ãã ã«éžæãããåäžã®çœ®æã«åºã¥ããŠã蚌æå¯èœãªèä¹
æ§ãæã€ãããã¯æå·ãæ§ç¯ããæ¹æ³ãææ¡ããŸãã

ã
ãã®ãããã¯æå·ãçŽæ¥ç޹ä»ããåã«ã玹ä»ããã·ã³ãã«ãšåºæ¬çãªå®çŸ©ã®ãªã¹ãã瀺ãããšãã§ããŸãã ãã ãããã€ã§ãããã«æ»ãããšãã§ããŸãããããã£ãŠããä»ãããã®ãã¹ãŠãèŠãããã«ç§ãããªãã«æ·±å»ãªé¢å¿ãæ±ãããå Žåã¯ãæå·ã®èª¬æã«çŽæ¥é²ãã§ãã ããã
ã¯ã©ã·ãã¯ã€ãŒãã³âãã³ã¹ãŒã«ã¹ããŒã
ã€ã¹ã©ãšã«ã®ç§åŠè
Shimon EvenãšYishay Mansourã¯ã圌ãã®ç ç©¶ã§ã蚌æå¯èœãªæå·åŒ·åºŠãæã€ãããã¯æå·ãææ¡ããŸããã

ãã¹ãŠã®é åã®ã»ããããã©ã³ãã ã«ïŒãŸãã¯æ¬äŒŒã©ã³ãã ã«ïŒéžæãããŸã

ãã¬ãŒã³ããã¹ãäžã
éžæããã眮æã¯ããŒã®äžéšã§ã¯ãªããäœããã®çš®é¡ã®ããã©ãã¯ããã¯ã¹ãã®åœ¢åŒã§ãã¹ãŠã®æ»æè
ãå©çšã§ãããšæ³å®ãããŠããŸãã
æ»æè
ã®èгç¹ãããææ¡ãããæå·ã¯çæ³çãªã©ã³ãã æå·ãšå®éã«åºå¥ãã€ãããã·ã¹ãã ãæ£åžžã«éã確çïŒç§å¯éµã®å埩ïŒ

ïŒã¯å€é
åŒçã«å°ããïŒäž»ãªçµæã¯
å®ç2 ãããããã®çµæ
2.1 ãããã³
å®ç3 ïŒã
ãŸããçã«ã©ã³ãã ãªçœ®æã®ä»£ããã«ç䌌ã©ã³ãã 眮æã䜿çšããŠãã瀺ãããŠããæå·ã®åŒ·åºŠã¯å€ãããªããšäž»åŒµãããŠããŸãã
説æ
ããã

ããããŠ

-ã»ããããéžæããã眮æ

å¹³æã®ã»ããã«å¯Ÿãããã¹ãŠã®é åãããã³

-圌女ã«éã
ãã¹ãŠã®èŠçŽ ã«å¯ŸããŠ

ãããŠ

ãªãŒãã³ããã³æå·æã®å€ã®ã»ãã
)
ãããŠ
)
é åã®å€ãçŽæ¥èšç®ããããšã§ç°¡åã«ååŸã§ããŸã

ãããŠ

ããŸãã¯ãããªãã¯ãªã©ã¯ã«ãåç
§ããããšã«ãã

ãããŠ

ã
ãªãŒãã³ã¹ããŒã¹ãšæå·æã¹ããŒã¹ã¯ãã€ããªã¹ããŒã¹ã§ã

âæ¬¡å
ãã¯ãã«ïŒ

ãããã³ã·ã¹ãã ã®ããŒã¹ããŒã¹ã¯æ¬¡å
ã®ãã€ããªãã¯ãã«ã®ã¹ããŒã¹ã§ã

ïŒ

ã
ç§å¯éµ

2ã€ã®é åºä»ããã¢ã§ã

âæ¬¡å
ãµãããŒïŒååïŒ

ãããŠ

; åãµãããŒã¯ã¹ããŒã¹ããã©ã³ãã ã«éžæãããŸã

âç確çã®æ¬¡å
ãã€ããªãã¯ãã«

ã
ãŸããéžæãããç§å¯éµã¯

æ£åœãªãŠãŒã¶ãŒã®ã¿ãç¥ã£ãŠãããå¹³æïŒã¡ãã»ãŒãžïŒã®æå·åãšæå·æïŒæå·ïŒã®è§£èªã«äœ¿çšãããŸãã
å¹³ææå·å

ç§å¯éµã䜿çšãã

ããã³éžæããã眮æ

次ã®ããã«çæãããŸãã
æå·æã®è§£èª

ããŒã䜿çšããŠ

ããã³éžæããã眮æ

-次ã®ããã«ïŒ
æ¬åœã«ç°¡åïŒ éµã®ååã§ãã¯ãœãªã¥ãŒãšããã¡ãã»ãŒãžãåãåãããã¹ãŠãã¢ã¯ã»ã¹å¯èœãªéãããã¬ãŒãã«çœ®ãæããããéµã®åŸåã§ãã¯ãœãªãåãåããæå·æãååŸããŸããã ããã§ãã ãªã誰ãå®éã«ãã®ã¹ããŒã ã䜿çšããªãã®ã§ããïŒ çµå±ã®ãšãããAESãDESããããã£ãšç°¡åã§ãã æãåçŽãªãããã¯æå·ã ããã§ãã£ããã¯ã©ãã§ããïŒ
ãã£ããåé¡ã¯ã眮æããã€ããªã«èšå®ãããŠããããšã§ã

-ããããã¯ãã«ãã©ã³ãã ã«éžæããã眮æã®çœ®æããŒãã«ãä¿åããããšã¯å®å
šã«åãå
¥ããããŸãããããã«ã¯ã
)
ã¡ã¢ãªã ãã®åé¡ã®å¯äžã®å¯èœãªè§£æ±ºçã¯ãä»»æã®ãã€ã³ãã§æ¯èŒçç°¡åã«å€ãèšç®ã§ããã
åªããæ¬äŒŒã©ã³ãã 眮æïŒã©ã³ãã 眮æãšã¯å€é
åŒçã«åºå¥ã§ããªãïŒãæ§ç¯ãã
ããšã§ãã æ¹æ³ãããããŸãã
åè·¯ã®æå°æ§ã«ã€ããŠ
å€å
žçãªã¹ããŒã ã¯ããã®ã¹ããŒã ã®èŠçŽ ã®ãããããåé€ãããšããã®æµæã倧å¹
ã«åŒ±ããªããšããæå³ã§
æå°ã§ããããšã«æ³šæããŠãã ããã ãµãããŒãžã®è¿œå ã®åé€ããŸãã¯çœ®æã瀺ãããšã¯ç°¡åã§ã

ã¹ããŒã ãè匱ã«ãªãããã®çµæãå®å
šã«äžå®å®ã«ãªããŸãã
- æåã®ãµãããŒã«ã¯è¿œå ã¯ãããŸããã
æå·å颿°ã®åœ¢åŒã¯æ¬¡ã®ãšããã§ãã
æ»æè
ã¯ç§å¯éµãç°¡åã«èšç®ã§ããŸãã
眮æãç¥ã
ïŒ
- 2çªç®ã®ãµãããŒãžã®è¿œå ã¯ãããŸããã
æå·å颿°ã®åœ¢åŒã¯æ¬¡ã®ãšããã§ãã
æ»æè
ã¯ç§å¯éµãç°¡åã«èšç®ã§ããŸãã
眮æãç¥ã
ïŒ
- è¡æ¹äžæã§ã
âãããã¯ïŒçœ®æ
ïŒ
æå·å颿°ã®åœ¢åŒã¯æ¬¡ã®ãšããã§ãã
æ»æè
ã¯ç§å¯éµãç°¡åã«èšç®ã§ããŸãã
ïŒ
åè·¯èä¹
æ§ã«ã€ããŠ
æ°žç¶æ§ã®åæãå®çŸ©
ææ¡ãããã¹ããŒã ã®å®å®æ§ã¯ã次ã®ä»®å®ã«ãããã®ã§ãã
- æ¬åœã®éµã¯æ»æè
ã«ç¥ãããŠããŸãã
; - æ»æè
ã¯ãç§å¯éµã§å¹³æïŒã¡ãã»ãŒãžïŒãæå·åããæå·æïŒæå·ïŒãè§£èªããããšãã§ããŸã
; - æ»æè
ã¯é åå€ãèšç®ããããšãã§ããŸã
ãããŠãããžã®éé å
ã
ã·ã¹ãã ãæããã«ããã¢ã«ãŽãªãºã ã¯ã次ã®4ã€ã®ãªã©ã¯ã«ãåç
§ã§ããŸãã

ïŒ
- ãªã©ã¯ã«
é åå€ãèšç®ããŸã
ã«
âæ¬¡å
ãã€ããªå
¥åã»ãã
ïŒ
- ãªã©ã¯ã«
é åå€ãèšç®ããŸã
ã«
âæ¬¡å
ãã€ããªå
¥åã»ãã
ïŒ
- ãªã©ã¯ã«
æå·åãã
âæ¬¡å
ãã€ããªã¿ã€ãã³ã°ïŒãã¬ãŒã³ããã¹ãïŒ
ã«
âæ¬¡å
ããŒ
ïŒ
- ãªã©ã¯ã«
è§£èªãã
âæ¬¡å
ãã€ããªã»ããïŒæå·æïŒ
ã«
âæ¬¡å
ããŒ
ïŒ
ããã«ãOracleãå€ãèšç®ãã眮æ

ïŒ

ïŒãéžæãããæå·åãšåŸ©å·åãåºå®ããŒã§å®è¡ãããŸã

ãOracleè¡šèšæ³ã®ã€ã³ããã¯ã¹ãçç¥ããŸãïŒ

ã
ãªã©ã¯ã«ã«ç®ãåãã

ãããŠ

眮æã®å€ãèšç®ããã¯ãšãªã䜿çšããŠ

ãããŠ

ãã€ã³ãã§

ãããŠ
)
ãã¢ã«ãŽãªãºã ã¯çããååŸããŸã

ãããŠ

ããã«å¿ããŠã
ãããã£ãŠãä»»æã®ã¢ã«ãŽãªãºã ãšãªã©ã¯ã«ãšã®éä¿¡

ãããŠ

ããã€ã³ãããã眮æå€ããšãã圢åŒã®ãã¢ã®åœ¢æã«çž®å°

ãã®æç¹ã§ïŒ
ãã®ãããªãã¢ãåŒã³åºããŸã
âPairs ãããã³ãã¹ãŠã®ã»ãã

âã¢ã«ãŽãªãºã ã«ãã£ãŠçæããããã¢

å®è¡ã®çµæãšããŠã

ãŸãã¯åã«

ã
ãªã©ã¯ã«ã«ç®ãåãã

ãããŠ

å¹³ææå·åãªã¯ãšã¹ã

æå·æã®è§£èª
)
ãã¢ã«ãŽãªãºã ã¯çããååŸããŸã

ãããŠ

ããã«å¿ããŠã
ãããã£ãŠãä»»æã®ã¢ã«ãŽãªãºã ãšãªã©ã¯ã«ã®éä¿¡

ãããŠ

ããã¬ãŒã³ããã¹ããããæå·æããšãã圢åŒã®ãã¢ã®åœ¢æã«çž®å°ãããŸãã
ãã®ãããªãã¢ãåŒã³åºããŸã
âPairs ãããã³ãã¹ãŠã®ã»ãã

âã¢ã«ãŽãªãºã ã«ãã£ãŠçæããããã¢

å®è¡ã®çµæãšããŠã

ãŸãã¯åã«

ã
å®çŸ©
âãã¢

ãããŠ
亀差ãããšåŒã°ã
ãŸã 
ã©ã¡ãã

ã
åæ§ã®å®çŸ©ã¯

âãã¢
å®çŸ©
âãã¢

ãããŠ
亀差ãããšåŒã°ã
ãŸã 
ã©ã¡ãã

ã
ã¹ããŒãã¡ã³ã1 ïŒéè€ãããã¢ã¯åäžã§ãïŒ
ãã¹ãŠã®ãªã©ã¯ã«ã

åºå®ããããã®ã«æ£çŽ

ãããŠ

æ¬¡ã®æãçã§ãã
- 亀差ãã
âãã¢ã®äžèŽã - 亀差ãã
âãã¢ãäžèŽããŸãã
ã¢ãžã¥ãã¢ãµãŒã·ã§ã³1ãã»ããã®ãã¹ãŠã®ãã¢ãä»®å®ã§ããŸãã

ãããŠ

äºãã«äº€å·®ããªãã§ãã ããã
æåã®ç¢ºç 
ã¢ã«ãŽãªãºã

ãã®ã¢ã«ãŽãªãºã ãèšç®ãã確çãåŒã³åºããŸã

ä»»æã®ïŒãã ãæ£ããïŒå
¥åã§ã®æ£ããåºå£ã ãããã£ãŠãããšãã°ã確çã«ãã£ãŠ

ã¢ã«ãŽãªãºã ã®æå

æå·åããŒãèšç®ãã

âãã¢

確çããããŸã
å®è¡æ 
ã¢ã«ãŽãªãºã

ãã®ã¢ã«ãŽãªãºã ã«ãã£ãŠå®è¡ãããã¯ãšãªã®æ°ãçè§£ããŸã

ã
å®çŸ©æ©èœ
å€é
åŒã®å Žåã
å€é
åŒç¡èŠå¯èœãšåŒã°ããŸã
)
ãããŸã

ãã®ãããª

è¡ã£ã
%20%3C%201%20%2F%20p(n))
ïŒ
å®çŸ©ã¿ã¹ã¯

æéçã«å€é
åŒã§åºåãããããããè§£ãã¢ã«ãŽãªãºã ã®æå確çãå€é
åŒçã«å°ããå Žåãããã
å°é£ãšåŒã³ãŸãã
æ£åŒãªã¢ãã«ã®èª¬æ
[EM97]ã§ææ¡ãããã¢ãã«ã§ã¯ãæ»æè
ã¯æå·ããã€ã¹ãšéžæããã眮æã«ã€ããŠã®ç¥èãå®å
šã«ææããŠããŸãã

ã ã·ã¹ãã ãç Žå£ããããã«ãæ»æè
ã¯äœããã®ã¢ã«ãŽãªãºã ã䜿çšããŸã

ãæ¬¡ã®2ã€ã®åé¡ã®ããããã解決ã§ããŸãïŒ
埩å·ååé¡ 
ããŸãã¯
æ°ããå¹³æ/æå·æã®ãã¢ãæ§ç¯ããã¿ã¹ã¯ 
ã
埩å·ååé¡ïŒ
ïŒ
埩å·ååé¡ïŒ

ã
ã¯ã©ããã³ã°ã®åé¡ ïŒã¯ãäžéšã®éããããã¹ãã®æ»æè
ã«ãã埩å·åã®åé¡ãšããŠçè§£ãããŠããŸã

ã ããã«ãä»»æã®ã¢ã«ãŽãªãºã

åé¡ã解決ããããã«æ»æè
ã«ãã£ãŠäœ¿çšããããªã©ã¯ã«ã«ã¢ã¯ã»ã¹ã§ããŸã

ã

ã

ã

ããã§ïŒ
- ïŒéå®
ïŒãªã©ã¯ã«
è§£èªãã
âæ¬¡å
ãã€ããªã»ããïŒæå·æïŒ
ãé€ã
ããŒã«
ïŒ
ã¢ã«ãŽãªãºã

ã·ã¹ãã ãæ£åžžã«éããŸã
![\æŒç®åå{A} \å·Š[C_0 \å³]} = DïŒC_0ã\äžç·{K}ïŒ](http://tex.s2cms.ru/svg/%5Coperatorname%7BA%7D%5Cleft%5BC_0%5Cright%5D%7D%20%3D%20D%20(C_0%2C%20%5Cunderline%7BK%7D))
ã
æ°ããå¹³æ/æå·æã®ãã¢ãæ§ç¯ããã¿ã¹ã¯ïŒ
ïŒ
æ°ããããã¹ãã®ãã¢ãäœæããã¿ã¹ã¯ã®äžïŒ

ã
å®åã®åœé åé¡ ïŒãã®ãããªãã¢ãæ§ç¯ããåé¡ãçè§£ãããŠããŸã

é¢ä¿ãæºããã ãã
)
ãåæã«ãªã©ã¯ã«ã®1ã€ãžã®èŠæ±ãšå¿çã§æ§æãããŠããŸããã§ãã

ã ããã«ãä»»æã®ã¢ã«ãŽãªãºã

æ»æè
ãåé¡ã解決ããããã«äœ¿çšãããšã4ã€ã®ãªã©ã¯ã«ãã¹ãŠã«ã¢ã¯ã»ã¹ã§ããŸãã

ã
ã¢ã«ãŽãªãºã ã®æå

å¹³æãšæå·æã®
æ°ããæ£ãããã¢ã®åä¿¡ãèæ
®ãããŸã

ã
ããã¹ã/æå·æã®ãã¢ãäœæããã¿ã¹ã¯ã忀ã¿ã¹ã¯ã«åæžïŒ
ïŒ
å®ç1 ïŒEFPããCPãžã®åæžïŒ
ããã

ããããŠã¢ã«ãŽãªãºã ããããŸã

忀åé¡ã®è§£æ±º

æéå
ã«
)
æåã®ç¢ºçã§
)
ãã®åŸãã¢ã«ãŽãªãºã ããããŸã

ããã€ãã®ããã¹ããäœæãã

åæã«
)
æåã®ç¢ºçã§
%20%2F%20T(n))
ïŒ
%2C%5C%20p_%7B%5Cmathrm%7BA%7D%7D%20%3D%20%5Cxi(n)%20%5C%3E%5CLongrightarrow%5C%3E%0A%5Cexists%20%5Cmathrm%7BB%7D%20%5Ctext%7B%20%D0%B4%D0%BB%D1%8F%20%D1%80%D0%B5%D1%88%D0%B5%D0%BD%D0%B8%D1%8F%20%7D%20%5Cmathsf%7BEFP%7D%20%5Cmid%20T_%7B%5Cmathrm%7BB%7D%7D%20%5Cleq%20T(n)%2C%5C%20p_%7B%5Cmathrm%7BB%7D%7D%20%3D%20%5Cfrac%7B%5Cxi(n)%7D%7BT(n)%7D.%0A)
蚌æãã¬ãŒã³ããã¹ããä¿®æ£

éµ

ããã³æå·æ
)
ãããã³ã¢ã«ãŽãªãºã ã®é²è¡ãæ€èšãã
![\æŒç®åå{A} \å·Š[C_0 \å³]}](http://tex.s2cms.ru/svg/%5Coperatorname%7BA%7D%5Cleft%5BC_0%5Cright%5D%7D)
ã
äžè¬æ§ã倱ãããšãªããã¢ã«ãŽãªãºã ã

æ£åžžã«åŸ©å·åãã

ãã®åŸããã
éèŠãªæç¹ã§
)
ãã®ã¢ã«ãŽãªãºã ã®å®è¡ãæ»æè
ã¯èŠã€ãã£ãå¹³æã-ãåè£ããã§ãã¯ããŸã

ïŒåããŠïŒæå·åã®ãªã¯ãšã¹ããOracleã«éä¿¡ãã

è§£èªå¯èœãªæå·æã®æ¯èŒ

ãªã©ã¯ã«ã®çãïŒ
ã¢ã«ãŽãªãºã ã«åºã¥ããŠ

ã¢ã«ãŽãªãºã ãæ§ç¯ãã

åé¡ã解決ãã

ïŒ
- æå·æãä¿®æ£
; - ã¢ã«ãŽãªãºã ã®å®è¡ãå§ããŸããã
; - ã©ã³ãã ã«éžæ
ã»ã°ã¡ã³ãå
šäœã«åäžã«ååž
; - ã¢ã«ãŽãªãºã ã®å®è¡ã忢ããŸã
åŸ
ãªã©ã¯ã«ãžã®ã¯ãšãªã - ãªã¯ãšã¹ãã«å¿ããŠ
ã¢ã«ãŽãªãºã
æå·åãèŠæ±ãã
ã ãã®åŸãã¢ã«ãŽãªãºã ã®å®è¡ã忢ããå
ã®ãã¢-
ã
ã¢ã«ãŽãªãºã ããããããã

ããããŸãã
)
Oracleã¯ãšãª

æãŸãããã¢

埩å·åã¢ã«ãŽãªãºã ã

ããã¹ããæ£åžžã«è§£èªããŸã

ïŒç¢ºçä»ã
)
ïŒããã³

éèŠãªã¿ã€ãã³ã°ã§åæ¢ããŸã

ïŒç¢ºçä»ã
)
ïŒïŒ
蚌æããå¿
èŠãããå Žåã
åž°çµ1.1ä»»ããŠ

é£ããïŒå€é
åŒæ±ºå®ã¢ã«ãŽãªãºã ã®å ŽåïŒ

åœŒã®æåã®å¯èœæ§

å€é
åŒãå°ããïŒã次ã«åé¡

é£ããïŒå€é
åŒæ±ºå®ã¢ã«ãŽãªãºã ã®å ŽåïŒ

åœŒã®æåã®å¯èœæ§

å€é
åŒãå°ããïŒã
éã®å£°æïŒéå
æ§

ïŒã¯äžè¬çãªå Žåã«ã¯åœãŠã¯ãŸããŸããïŒæå·ã·ã¹ãã ã®äžéšã®ã¯ã©ã¹ã§ã¯ã察å¿ããæå·æãäºåã«ç¥ãããŠãããããŒã«äŸåããªãå¹³æããããŸãïŒããšãã°ã

RSAåè·¯ã§ïŒã
ã©ã³ãã 眮æã䜿çšããã·ã¹ãã ã®å®å®æ§ 
ã¬ãžãªãšã³ã¹ã®èšŒæã®äž»ãªã¢ã€ãã¢ã¯æ¬¡ã®ãšããã§ãã
- å€é
åŒçã«å¶éãããæ»æã®ä»»æã®æ®µéã§ããè¯å¥œãªãããŒïŒæ»æè
ãå©çšã§ããããŒã¿ã«åºã¥ããŠæ»æè
ãçå®ã確èªãæåŠãã§ããªãããŒïŒã®ã»ãããææ°é¢æ°çã«å€§ããããšã瀺ããŸãïŒ è£é¡1 ïŒã
- æ»æè
ãçã®éµããæšæž¬ãã§ããããšã瀺ã
å€é
åŒã®ç¢ºçãå°ããå Žåã®ã¿ïŒ å®ç2 ïŒã - æ»æè
ãçã®ããŒãèå¥ããã®ã«ååãªããŒã¿ãåéããããšã瀺ã
ãªã©ã¯ã«ã«å¯Ÿããã¯ãšãªã®å€é
åŒæ°ïŒ å®ç2 ïŒã
å®çŸ©æåã®ãµãããŒ

ããŒ

ã¢ã«ãŽãªãºã ã«é¢ããŠ
æªããšåŒã°ãã

ãããŠåœŒãéçºããã»ãã

ãããŠ

ååšããå Žå

âãã¢

ãããŠ

âãã¢
%20%5Cright%5Crangle%20%5Cin%20%5Cmathsf%7BP%7D)
ãã®ãããª

; ãããŠå¥ã®å Žåã«ã¯
è¯ã ïŒ
ã€ãŸãããµãããŒ

ã¢ã«ãŽãªãºã ã®çµæãšããŠåŸãããçŽ æã«åºã¥ããŠã

ãã©ãããææ¡ããããšã¯äžå¯èœ

æ¬åœã®éµã§

ã æ¬¡ã®äŸã䜿çšããŠããã®éå
¬åŒã®å®çŸ©ã«ã€ããŠèª¬æããŸãããã

æªãã§ãããããŠãæªããµãããŒã®å®çŸ©ã«ãããšã

âãã¢

ã©ãã§
)
ããããŠ

âãã¢
%20%5Cright%5Crangle)
ã æ¬¡ã«ããŒ

çã®ããŒã®åœ¹å²ã®åè£

ã©ãã§
æããã«ãã®ãããªããŒ

ããã
æºãã 
âãã¢ããªããªã
åéãããä»ã®äœ¿çš

âãã¢ãš

âã«ããã«æ»æè
ã¯ããã®æ¹æ³ã§æ§ç¯ãããããŒã

çã®éµ

ãªãŒãã³ã·ã¹ãã ã åãå
¥ããŸãïŒãµãããŒãšããŠ

ïŒããŸãã¯ãµãããŒãç Žæ£

ã
åæ§ã®å®çŸ©ã2çªç®ã®ãµãããŒã«å®åŒåã§ããŸã

ã
å®çŸ©2çªç®ã®ãµãããŒ

ããŒ

ã¢ã«ãŽãªãºã ã«é¢ããŠ
æªããšåŒã°ãã

ãããŠåœŒãéçºããã»ãã

ãããŠ

ååšããå Žå

âãã¢

ãããŠ

âãã¢
%20%5Cright%5Crangle%20%5Cin%20%5Cmathsf%7BP%7D)
ãã®ãããª
)
; ãããŠå¥ã®å Žåã«ã¯
è¯ã ïŒ
å®çŸ©ããŒ

äž¡æ¹ã®ãµãããŒã
è¯ããšåŒã°ãã

ãããŠ

è¯ãå Žåãš
æªãå ŽåããããŸãã
ã¹ããŒãã¡ã³ã2 ïŒçã®ãµãããŒã¯é·æãå
±æããŸãïŒ
ç§å¯éµä»ã

ããã³åé
眮

å·®ã蟌ã

ãããŠ

äž¡æ¹ãšãè¯ããæªããïŒ
è£é¡1 ïŒäžè¯ããŒã®å²åïŒ
ã¢ã«ãŽãªãºã ãããŸããã

ããããåãã

ãããŠ

ã°ãã°ã

âãã¢ãš

âãããããã¢ãªã³ã°ããŠããå
±æ

ããŒã¹ããŒã¹ã®äžè¯ããŒ

è¶
ããªã

ã
蚌æäžè¯ãµãããŒã®å®çŸ©ã«ãããšããµãããŒ

èŠã€ãã£ããæªã

âãã¢

ãããŠ

âãã¢
%5Cright%5Crangle%20%5Cin%20%5Cmathsf%7BP%7D)
ãã®ãããª
æåŸã®ææ®µãšããŠããã¹ãŠã®ã»ããã§æåŸã®å¹³çãå®çŸã§ããŸã

ããã®åŸãæ§ã
ãª

ãããŠ

ãã¹ãŠ

å·®ã蟌ã

æªãã§ãã
åæ§ã®æšè«ã¯ãäžè¯ãµãããŒã®æå€§æ°ãšããäºå®ã«ã€ãªãããŸã

ãŸãè¶
ããªã

ã
äž¡æ¹ã®ãµãããŒãããéžæãããŸã

ãããã«ãããäžè¯ããŒã®æ°ã®äžéãååŸã§ããŸãã
ãããŠãããŒã¹ããŒã¹å
ã®äžè¯ããŒã®ã·ã§ã¢

ïŒ
蚌æããå¿
èŠãããå Žåã
å®çŸ©ããã

-ããã®çœ®æ

ããããŠ

ããã€ãã®ããŒã§ãã
ç§ãã¡ã¯ã«ããã«ãšèšãã§ããã

ã»ããã
æºãã 
âãã¢

ãããŠ

âãã¢

æ¬¡ã®æ¡ä»¶ã«è©²åœããå ŽåïŒ
- 代çš
çã®çœ®æãšåºå¥ã§ããªã
çµæã»ããã§
âãã¢ïŒ
- 代çš
çã®çœ®æãšåºå¥ã§ããªã
çµæã»ããã§
âãã¢ïŒ
次ã®è£é¡ã¯ããã¹ãŠã®é©åãªããŒããããæå³ã§ãçã®æå·åããŒã®åœ¹å²ã®åçã®åè£ã§ããããšã瀺ããŠããŸã

ã
è£é¡2 ïŒçã®ããŒåè£ã®é
åžïŒ
ããã

ãããŠ

-ã»ãã

âãã¢ãš

âãããããããã³

çã®ããŒã§ããå ŽåãããããŒã

ç§å¯éµã§ã

誰ããåãã§ã

ïŒ
![\ forall i \ mid 1 \ leq {i} \ leq \ left \ vert \ã{\ mathcal {K} \ã\ right \ vert \ïŒgt; \ Longrightarrow \ïŒgt; \ Pr {\å·Š[\äžç·{K} = K_ {i} \å³]} = \ alpha = \ operatorname {const}ã](http://tex.s2cms.ru/svg/%0A%5Cforall%20i%20%5Cmid%201%20%5Cleq%20%7Bi%7D%20%5Cleq%20%5Cleft%5Cvert%5C%2C%7B%5Cmathcal%7BK%7D%5C%2C%5Cright%5Cvert%20%5C%3E%5CLongrightarrow%5C%3E%20%5CPr%7B%5Cleft%5B%5Cunderline%7BK%7D%20%3D%20K_%7Bi%7D%5Cright%5D%7D%20%3D%20%5Calpha%20%3D%20%5Coperatorname%7Bconst%7D.%0A)
蚌æããŒãåçã«é
åžãããå ŽåïŒ
ããã³çœ®æ

ã©ã³ãã ã«éžæïŒ
ææã®ç¢ºçã¯æ¡ä»¶ä»ã確çã§ããããšãããããŸã
ãã€ãºåŒã䜿çšããŸãã
è£é¡ã®èšŒæãé³è¿°ã®èšŒæã«éå
ãããããšã¯å®¹æã«ããããŸã

ã
ã©ã®ããŒã§ãããã瀺ããŸã

å€ãã®

âãã¢

åçã®ã»ããã«å€æã§ããŸã

âãã¢

ã«ãã¯ã¢ããã®å¶é

次ã®ã«ãŒã«ã«åŸã£ãŠïŒ
æããã«ã眮æãåºå®ãããŠããŸã

ããŒã®å Žå

æºè¶³ãã

âãã¢

ããã¯æºè¶³ãã

âãã¢

ã ãŸãã

ã瀺ããããããã³ã°ã¯å
šåå°ãå®çŸ©ãããã

ã
ãããã£ãŠã確çã®åŒ

次ã®åœ¢åŒãåããŸãã
ããŒã

è¯ãã§ãããèšå®ããŸã

âãã¢

ãããŠ

é©åãªããŒã®å®çŸ©ã«ãã£ãŠäº€å·®ããªãã§ãã ããïŒ
ãã®å ŽåãæãŸãã確ç

ïŒã©ã³ãã ã«éžæãããïŒé åã®ç¢ºç

æºè¶³ãã

å¶éã ãã®ç¢ºçã¯ããŒã«äŸåããŸããã

ãšçãã
ãããã£ãŠã確çã®åŒã®ãã¹ãŠã®ç¢ºçã¯äžå®ã§ãããããŒã«äŸåããŸãã

ãå¿
èŠã«å¿ããŠã
å®ç2 ïŒä»»æã®æå確çã®å¢ç

è§£ã

ïŒçœ®æãããŸã

ããã©ã³ãã ã«éžæ

ããŒ

ããã©ã³ãã ã«éžæ

次ã«ãã¢ã«ãŽãªãºã ãæåãã確çã«ã€ããŠ

åé¡ã解決ãã

次ã®äžéããããŸãã
ã©ãã§

-ãªã©ã¯ã«ãžã®ã¯ãšãªã®æ°

ãããŠ

ããããŠ

-ãªã©ã¯ã«ãžã®ã¯ãšãªã®æ°

ãããŠ

ã
蚌æããã¢ã«ãŽãªãºã ããããšããŸããã

ããã¯åé¡ã解決ããŸã

åæã«ã»ãããçæããŸã

ãããŠ


âãã¢ãš

âãããããã¢ã ãã®ã¢ã«ãŽãªãºã ã¯ã次ã®2ã€ã®å Žåã®ããããã§ã®ã¿æåã
ãŸãã
ã¢ã«ãŽãªãºã ã®ã¹ãããã®1ã€ã§ ããŸãã¯ãã®åŸã§
äžè¯ã«ãªã 
ã¹ãããã¢ã«ãŽãªãºã
æ£ãããã¢ããæšæž¬ãããã ãã§ã

æäŸããã
%7D)
ã
ã§ç€ºã
%7D)
ãããŠ
%7D)
å€ãã®

âãã¢ãš

âã¢ã«ãŽãªãºã ã«ãã£ãŠçæããããã¢

æåã¯

ã¯ãšãªïŒ
ã§ç€ºã
%7D)
å€ãã®ããŒãã»ããã«é¢ããŠè¯å¥œ
%7D)
ãããŠ
%7D)
ã æ¬¡ã«ãå
ã«èšŒæããè£é¡ã«ããããã®ãããªããŒã®æ°ã¯æ¬¡ã®ããã«æšå®ã§ããŸãã
äžè¬æ§ã倱ãããšãªããçã®éµã¯

ãã®ã»ããã«å±ããŸãïŒè¯ãïŒã ã¢ã«ãŽãªãºã ã¯

以äžã®çµæãšããŠãæåããå Žå

-ãªã¯ãšã¹ãããŒ

æªãããšã倿ããŸãã ãã®æåã®å®çŸ©ã¯ãåã«ç€ºããå®çŸ©ã«å¯Ÿå¿ããŠããªãããåŸè
ã®å¿
èŠæ¡ä»¶ã§ããããšã«æ³šæããŠãã ããã
ã¢ã«ãŽãªãºã ã«ãã£ãŠéä¿¡ãããå¯èœæ§ã®ãããã¹ãŠã®çš®é¡ã®èŠæ±ãæ€èšããŠãã ããã

次ã®ãªã©ã¯ã«ã«ã

âã¹ããããããã³ãããã®ã©ããããããŠã©ã®ç¢ºçã§ãããŒãé€å€ããããèŠã€ããŸã

è¯ãããŒã®äžããïŒ

ïŒïŒ
- ãªã©ã¯ã«ãžã®ãªã¯ãšã¹ã
ïŒ
ããã

-ãã®ãããªãªã¯ãšã¹ãã®çµæãšããŠåœ¢æããã

ã«ããã«ã 次ã®2ã€ã®ãªãã·ã§ã³ãå¯èœã§ãã
- ã«ããã«
ããã®å Žåãã¢ã«ãŽãªãºã ã«ãã£ãŠè§£æ±ºãããã»ããã¯å€æŽããããããŒ
è¯ããŸãŸã§ãã - ã«ããã«
ããã®å Žåãæ¬¡ã®çåŒãæãç«ã¡ãŸãã
ããŒã®æ°ãæ°ãã

ãã®ãããªãã¢ã®åœ¢æã®çµæãšããŠæªåãã

ã ããŒ

ãµãããŒã®å°ãªããšã1ã€ãæªãå Žåã¯æªã

ïŒ
æ°
%7D)
æªããµãããŒ

ïŒã¹ãããã§

ïŒäžè¯ãµãããŒã®å®çŸ©ã«ãããç°ãªãéã®æ°ã«çãã

ã€ã³ããã¯ã¹ã¯ã©ãã§ãã

ãã¹ãŠãé§ãæãã

âã»ããã®ãã©ã¡ãŒã¿ãŒ
%7D)
ãããã³ã€ã³ããã¯ã¹

-ãã¹ãŠã®ããã«

âã»ããã®ãã©ã¡ãŒã¿ãŒ
%7D)
ïŒ
äžèšã®çåŒãäžãããããš
%7D)
ãããŠ
%7D)
ç§éã¯åŸãïŒ
åæ§ã®çç±ã§ãäžè¯ãµãããŒã®æ°

ãŸãããã
%7D%20%2B%20m)
ïŒ
ããããæ°
%7D)
æªãéµ

ã¹ãããã§

次ã®ããã«è©äŸ¡ãããŸãã
ç®çã®å·®ã¯æ¬¡ãšçãããªããŸãã
ïŒã©ã³ãã ã«éžæãããïŒããŒ

ã®äžã«ãªããŸã

äžæ£ã«ãªã£ãããŒïŒãªã©ã¯ã«ãžã®ãªã¯ãšã¹ãã®çµæãšããŠïŒ

ïŒãšçãã
- ãªã©ã¯ã«ãžã®ãªã¯ãšã¹ã

Oracleãªã¯ãšã¹ãã«äŒŒãŠããŸã

ããŒã®ç¢ºç

ïŒãªã©ã¯ã«ãžã®ãªã¯ãšã¹ãã®çµæãšããŠïŒæªãããšã倿ããŸã

ïŒè¶
ããªã
- ãªã©ã¯ã«ãžã®ãªã¯ãšã¹ã

ããã

-ãã®ãããªãªã¯ãšã¹ãã®çµæãšããŠåœ¢æããã

ã«ããã«ã 次ã®2ã€ã®ãªãã·ã§ã³ãå¯èœã§ãã
- ã«ããã«
ããã®å Žåãã¢ã«ãŽãªãºã ã«ãã£ãŠè§£æ±ºãããã»ããã¯å€æŽããããããŒ
è¯ããŸãŸã«ãªããŸã; - ã«ããã«
ãã®å Žåãæ¬¡ã®çåŒãæãç«ã¡ãŸãã
ããŒã®æ°ãæ°ãã

ãã®ãããªãã¢ã®åœ¢æã®çµæãšããŠæªåãã

ã
æ°
%7D)
æªããµãããŒ

ïŒã¹ãããã§

ïŒäžè¯ãµãããŒã®å®çŸ©ã«ãããç°ãªãéã®æ°ã«çãã

ã€ã³ããã¯ã¹ã¯ã©ãã§ãã

ãã¹ãŠãé§ãæãã

âã»ããã®ãã©ã¡ãŒã¿ãŒ
%7D)
ãããã³ã€ã³ããã¯ã¹

-ãã¹ãŠã®ããã«

âã»ããã®ãã©ã¡ãŒã¿ãŒ
%7D)
ïŒ
ã®çåŒãèãããš
%7D)
ãããŠ
%7D)
ç§éã¯åŸãïŒ
åæ§ã®çç±ã§ãäžè¯ãµãããŒã®æ°

ãŸãããã
%7D%20%2B%20l)
ïŒ
ããããæ°
%7D)
æªãéµ

ã¹ãããã§

次ã®ããã«è©äŸ¡ãããŸãã
ãããŠãæãŸããå·®ïŒ
ïŒã©ã³ãã ã«éžæãããïŒããŒ

ã®äžã«ãªããŸã

äžæ£ã«ãªã£ãããŒïŒãªã©ã¯ã«ãžã®ãªã¯ãšã¹ãã®çµæãšããŠïŒ

ïŒãšçãã
- ãªã©ã¯ã«ãžã®ãªã¯ãšã¹ã
ã
Oracleãªã¯ãšã¹ãã«äŒŒãŠããŸã

ããŒã®ç¢ºç

ïŒãªã©ã¯ã«ãžã®ãªã¯ãšã¹ãã®çµæãšããŠïŒæªãããšã倿ããŸã

ïŒè¶
ããªã
çµè«ãå°ããŸãïŒ

âãã¢

ã¹ãããã§çæ

ããŒãçºçããŸã

æªããªãããšã倿ãã確çã¯å€§ãããªã
)
ãã®åŸãããŒ

å°ãªããšã1ã€ã®çµæãšããŠæªåããŸã

ãã®ãããªãªã¯ãšã¹ãïŒ

ïŒããã以äž
)
ã
åæ§ã«ãããŒ

å°ãªããšã1ã€ã®çµæãšããŠæªåããŸã

Oracleã¯ãšãª


ãŸãããã
)
ã æ¬¡ã«ãçã®ããŒãçæããã確çã®äžéãååŸããŸã

äžè¬çã«ãã¢ã«ãŽãªãºã ã®å®è¡äžã«æªåããŸã

ïŒ
å¥ã®ã±ãŒã¹ã§ã¯ãã¢ã«ãŽãªãºã

ãæšæž¬ãæ£ãã

âã«ããã«

ïŒ
åŸ

ããŒã䜿çšããã¯ãšãª

-ã»ããã«é¢ããŠè¯ã

ãããŠ

ã å®çŸ©äžããã¹ãŠã®éã«é©åãªããŒã¯ååšããŸãã

âãã¢ã»ãã

ãã®ãããªãã¢ã§ã¯ãªã

ãã

ã©ã¡ãã

ã
眮æå€

ãã®æç¹ã§

ã«éå®ãããªã

âå€ãã®ãã¢

ããŒãšããäºå®ã®ããã«

è¯ããšåäžã§ã¯ãããŸãã

âãæšæž¬ãããããã¢ãšããäºå®ã«ãããã¢

-æ°ããã ã ãã
)
ã®ãããããåãããšãã§ããŸã
)
ãå€ããããã³æãŸãã確ç
ãã®åŸãæåã®ç¢ºç

ã¢ã«ãŽãªãºã

ïŒ
蚌æããå¿
èŠãããå Žåã
åž°çµ2.1代å
¥ããŠã¿ãŸããã

ããã©ã³ãã ã«éžæ

ãã®åŸãä»»æã®ã¢ã«ãŽãªãºã ã®æåã®ç¢ºç

åé¡ã解決ãã

ãããŠããªã©ã¯ã«ãžã®ã¯ãšãªã®æ°ã«ãã£ãŠå€é
åŒçã«å¶éãããŸã




å€é
åŒãå°ããã
æ¬äŒŒã©ã³ãã 眮æã䜿çšããã·ã¹ãã ã®å®å®æ§ 
[EM97]ã§ææ¡ãããŠããæå·ã¯ã眮æãè¡ãããŠã

æ¬äŒŒã©ã³ãã ã«éžæãããŸãã
ãã®ã¹ããŒãã¡ã³ãã蚌æããã«ã¯ãæ¬äŒŒã©ã³ãã 眮æã®æŠå¿µãæç¢ºã«ããã°ååã§ãã
å®çŸ©ããã

-ã©ã³ãã 眮æãããã³

-ããã€ãã®ä»£æ¿ããéžæ

ããã€ãã®äžåäžãªååžæ³ã«åŸã£ãŠã

ãããŠ

-ããããå®çŸããç¥èšã ç§ãã¡ã¯çœ®æãšèšããŸã

ãªã©ã¯ã«ãåºå¥ããå€é
åŒã¯ãšãªå¶éã¢ã«ãŽãªãºã ããªãå Žåã¯
æ¬äŒŒã©ã³ãã 
ãããŠ

ã
èšãæããã°ãæç€ºããããªã©ã¯ã«ã䜿çšããèšç®ã¢ãã«ã§ã¯ãæ¬äŒŒã©ã³ãã 眮æã¯ã©ã³ãã ãšåºå¥ã§ããŸããã ãããã£ãŠã次ã®å®çãæãç«ã¡ãŸãã
å®ç3代å
¥ããŠã¿ãŸããã

ããæ¬äŒŒã©ã³ãã ã«éžæ
ãã®å Žåã
åé¡ã解決ãã
ãªã©ã¯ã«ãžã®ã¯ãšãªã®æ°ã«ãã£ãŠå€é
åŒçã«å¶éãããŠããã¢ã«ãŽãªãºã ã®æå確çã¯ã


å€é
åŒã®å°ããã§ããç¶ããŠ
ã¯ãããã©ã¹ã³ã«ã¯ãŸã ç«è¬ããããŸããHabréã«èå³ã®ãã人ãããå Žåãæ¬¡ã®ããŒãã§ã¯ããã®å€å
žçãªã¹ããŒã ã®å€æŽãšãããŸããŸãªæå·æ»æãæ€èšããããšãã§ããŸãïŒã¡ãªã¿ã«ã以äžã§åŸãããæšå®å€ã¯æ£ç¢ºã§ãããæ¹åã§ããªãããšã瀺ããŠããŸãïŒãåç
§è³æ
éåžžã«èå³ããã人ã®ããã«ïŒ- Eli BihamãYaniv CarmeliãItai DinurãOrr DunkelmanãNathan Kellerãããã³Adi Shamirã2ã€ã®ããŒã䜿çšããå埩Even-Mansourã¹ããŒã ã®æå·è§£æãIACRæå·åePrintã¢ãŒã«ã€ãã2013ïŒ674ã2013ã
- Andrey Bogdanov, Lars R Knudsen, Gregor Leander, Francois-Xavier Standaert, John Steinberger, and Elmar Tischhauser. Key-alternating ciphers in a provable setting: Encryption using a small number of public permutations. In Advances in CryptologyâEUROCRYPT 2012, pages 45â62. Springer, 2012.
- Alex Biryukov and David Wagner. Advanced slide attacks. In Advances in CryptologyâEUROCRYPT 2000, pages 589â606. Springer, 2000.
- Shan Chen, Rodolphe Lampe, Jooyoung Lee, Yannick Seurin, and John Steinberger. Minimizing the two-round Even-Mansour cipher. In Advances in CryptologyâCRYPTO 2014, pages 39â56. Springer, 2014.
- Joan Daemen. Limitations of the Even-Mansour construction. In Advances in CryptologyâASIACRYPT'91, pages 495â498. Springer, 1993.
- Itai Dinur, Orr Dunkelman, Nathan Keller, and Adi Shamir. Key recovery attacks on 3-round Even-Mansour, 8-step LED-128, and full AES2. In Advances in Cryptology-ASIACRYPT 2013, pages 337â356. Springer, 2013.
- Orr Dunkelman, Nathan Keller, and Adi Shamir. Minimalism in cryptography: The Even-Mansour scheme revisited. In Advances in CryptologyâEUROCRYPT 2012, pages 336â354. Springer, 2012.
- [EM97] Shimon Even and Yishay Mansour. A construction of a cipher from a single pseudorandom permutation. Journal of Cryptology, 10(3):151â 161, 1997.
- Shoni Gilboa and Shay Gueron. Balanced permutations even-mansour ciphers. arXiv preprint arXiv:1409.0421, 2014.
- Philip Hawkes and Luke O'Connor. Xor and non-xor differential probabilities. In Advances in CryptologyâEUROCRYPT'99, pages 272â285. Springer, 1999.
- Nicky Mouha and Atul Luykx. Multi-key security: The Even-Mansour construction revisited. Technical report, Cryptology ePrint Archive, Report 2015/101, 2015.
- Ivica Nikolic, Lei Wang, and Shuang Wu. Cryptanalysis of round-reduced LED. In Shiho Moriai, editor, Fast Software Encryption, volume 8424 of Lecture Notes in Computer Science, pages 112â129. Springer Berlin Heidelberg, 2014.
PSãã®åºçç©ã®äžéšã¯ãTeXã§æ§æãããŠãããHabrirãžã£ã ã«èª²ãããŠããŸããããªããæ°ã¥ããå Žå-é£çµ¡å
ãç§ã¯ä¿®æ£ããŸããç·šé1.ç§åŠè
ã®ååãä¿®æ£ããŸãããããããšãalexyrã