Improved integral cryptanalysis of SPNbox in digital rights management systems

Abstract As an access control technology of digital material, digital rights management systems have a profound effect on the copyright protection of digital content. To address the threat of key exposure, applying white‐box ciphers is effective to provide a security guarantee for digital rights man...

Full description

Saved in:
Bibliographic Details
Main Authors: Jun Liu, Dachao Wang, Yupu Hu, Jie Chen, Baocang Wang
Format: Article
Language:English
Published: Wiley 2023-01-01
Series:IET Information Security
Subjects:
Online Access:https://doi.org/10.1049/ise2.12087
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1832547359219777536
author Jun Liu
Dachao Wang
Yupu Hu
Jie Chen
Baocang Wang
author_facet Jun Liu
Dachao Wang
Yupu Hu
Jie Chen
Baocang Wang
author_sort Jun Liu
collection DOAJ
description Abstract As an access control technology of digital material, digital rights management systems have a profound effect on the copyright protection of digital content. To address the threat of key exposure, applying white‐box ciphers is effective to provide a security guarantee for digital rights management systems. SPNbox, proposed at Asiacrypt’16 is such a white‐box cipher that fulfils comprehensive resistance against key exposure for digital rights management systems, including black‐box security on the server‐side and white‐box security on the client‐side. So far, the previous integral cryptanalysis of SPNbox employs a general 2‐round distinguisher without considering the details of SPNbox. The properties of SPNbox are carefully explored and a novel 2‐round integral distinguisher is introduced. On this basis, we propose new competitive 3‐round key recovery attacks with lower complexities. Particularly, the improved attack on 3‐round SPNbox‐32 only requires 232 chosen plaintexts, whereas the current best attack necessitates 262 chosen plaintexts. In addition, integral attacks on 4‐ and 5‐round SPNbox‐8 are presented for the first time. Thus, the security margin of SPNbox‐8 is narrowed by two rounds. These results indicate that the capability of SPNbox resisting integral cryptanalysis is inferior to the designers' claim.
format Article
id doaj-art-5f7cff42742a40d692023f0387c847bd
institution Kabale University
issn 1751-8709
1751-8717
language English
publishDate 2023-01-01
publisher Wiley
record_format Article
series IET Information Security
spelling doaj-art-5f7cff42742a40d692023f0387c847bd2025-02-03T06:45:06ZengWileyIET Information Security1751-87091751-87172023-01-0117114715810.1049/ise2.12087Improved integral cryptanalysis of SPNbox in digital rights management systemsJun Liu0Dachao Wang1Yupu Hu2Jie Chen3Baocang Wang4State Key Laboratory of Integrated Service Networks Xidian University Xi'an ChinaState Key Laboratory of Integrated Service Networks Xidian University Xi'an ChinaState Key Laboratory of Integrated Service Networks Xidian University Xi'an ChinaState Key Laboratory of Integrated Service Networks Xidian University Xi'an ChinaState Key Laboratory of Integrated Service Networks Xidian University Xi'an ChinaAbstract As an access control technology of digital material, digital rights management systems have a profound effect on the copyright protection of digital content. To address the threat of key exposure, applying white‐box ciphers is effective to provide a security guarantee for digital rights management systems. SPNbox, proposed at Asiacrypt’16 is such a white‐box cipher that fulfils comprehensive resistance against key exposure for digital rights management systems, including black‐box security on the server‐side and white‐box security on the client‐side. So far, the previous integral cryptanalysis of SPNbox employs a general 2‐round distinguisher without considering the details of SPNbox. The properties of SPNbox are carefully explored and a novel 2‐round integral distinguisher is introduced. On this basis, we propose new competitive 3‐round key recovery attacks with lower complexities. Particularly, the improved attack on 3‐round SPNbox‐32 only requires 232 chosen plaintexts, whereas the current best attack necessitates 262 chosen plaintexts. In addition, integral attacks on 4‐ and 5‐round SPNbox‐8 are presented for the first time. Thus, the security margin of SPNbox‐8 is narrowed by two rounds. These results indicate that the capability of SPNbox resisting integral cryptanalysis is inferior to the designers' claim.https://doi.org/10.1049/ise2.12087digital rights managementintegral cryptanalysisSPNboxwhite‐box cipher
spellingShingle Jun Liu
Dachao Wang
Yupu Hu
Jie Chen
Baocang Wang
Improved integral cryptanalysis of SPNbox in digital rights management systems
IET Information Security
digital rights management
integral cryptanalysis
SPNbox
white‐box cipher
title Improved integral cryptanalysis of SPNbox in digital rights management systems
title_full Improved integral cryptanalysis of SPNbox in digital rights management systems
title_fullStr Improved integral cryptanalysis of SPNbox in digital rights management systems
title_full_unstemmed Improved integral cryptanalysis of SPNbox in digital rights management systems
title_short Improved integral cryptanalysis of SPNbox in digital rights management systems
title_sort improved integral cryptanalysis of spnbox in digital rights management systems
topic digital rights management
integral cryptanalysis
SPNbox
white‐box cipher
url https://doi.org/10.1049/ise2.12087
work_keys_str_mv AT junliu improvedintegralcryptanalysisofspnboxindigitalrightsmanagementsystems
AT dachaowang improvedintegralcryptanalysisofspnboxindigitalrightsmanagementsystems
AT yupuhu improvedintegralcryptanalysisofspnboxindigitalrightsmanagementsystems
AT jiechen improvedintegralcryptanalysisofspnboxindigitalrightsmanagementsystems
AT baocangwang improvedintegralcryptanalysisofspnboxindigitalrightsmanagementsystems