Source author record

Sharwan K. Tiwari

Sharwan K. Tiwari appears in the imported research catalog. Authorship, coauthor and topic links are available while profile ownership is still unclaimed.

ResearcherUnclaimed source record

Catalog footprint

What is connected

3works
5topics
4close collaborators

Actions

Connect this record

Log in to claim

Research graph

See the researcher in context

Open full explorer

Inspect adjacent papers, topics, institutions and collaborators without losing the researcher page.

Building this map preview

BZPEER is loading the nearby papers, people, topics and institutions for this page.

Published work

3 published item(s)

preprint2022arXiv

An algebraic attack to the Bluetooth stream cipher E0

In this paper we study the security of the Bluetooth stream cipher E0 from the viewpoint it is a "difference stream cipher", that is, it is defined by a system of explicit difference equations over the finite field GF(2). This approach highlights some issues of the Bluetooth encryption such as the invertibility of its state transition map, a special set of 14 bits of its 132-bit state which when guessed implies linear equations among the other bits and finally a small number of spurious keys, with 83 guessed bits, which are compatible with a keystream of about 60 bits. Exploiting these issues, we implement an algebraic attack using Gröbner bases, SAT solvers and Binary Decision Diagrams. Testing activities suggest that the version based on Gröbner bases is the best one and it is able to attack E0 in about 2^79 seconds on an Intel i9 CPU. To the best of our knowledge, this work improves any previous attack based on a short keystream, hence fitting with Bluetooth specifications.

preprint2022arXiv

Inverses of $r$-primitive $k$-normal elements over finite fields

Let $r$, $n$ be positive integers, $k$ be a non-negative integer and $q$ be any prime power such that $r\mid q^n-1.$ An element $α$ of the finite field $\mathbb{F}_{q^n}$ is called an {\it $r$-primitive} element, if its multiplicative order is $(q^n-1)/r$, and it is called a {\it $k$-normal} element over $\mathbb{F}_q$, if the greatest common divisor of the polynomials $m_α(x)=\sum_{i=1}^{n} α^{q^{i-1}}x^{n-i}$ and $x^n-1$ is of degree $k.$ In this article, we define the characteristic function for the set of $k$-normal elements, and with the help of this, we establish a sufficient condition for the existence of an element $α$ in $\mathbb{F}_{q^n}$, such that $α$ and $α^{-1}$ both are simultaneously $r$-primitive and $k$-normal over $\mathbb{F}_q$. Moreover, for $n>6k$, we show that there always exists an $r$-primitive and $k$-normal element $α$ such that $α^{-1}$ is also $r$-primitive and $k$-normal in all but finitely many fields $\mathbb{F}_{q^n}$ over $\mathbb{F}_q$, where $q$ and $n$ are such that $r\mid q^n-1$ and there exists a $k$-degree polynomial $g(x)\mid x^n-1$ over $\mathbb{F}_q$. In particular, we discuss the existence of an element $α$ in $\mathbb{F}_{q^n}$ such that $α$ and $α^{-1}$ both are simultaneously $1$-primitive and $1$-normal over $\mathbb{F}_q$.

preprint2021arXiv

Stream/block ciphers, difference equations and algebraic attacks

In this paper we model a class of stream and block ciphers as systems of (ordinary) explicit difference equations over a finite field. We call this class "difference ciphers" and we show that ciphers of application interest, as for example systems of LFSRs with a combiner, Trivium and Keeloq, belong to the class. By using Difference Algebra, that is, the formal theory of difference equations, we can properly define and study important properties of these ciphers, such as their invertibility and periodicity. We describe then general cryptanalytic methods for difference ciphers that follow from these properties and are useful to assess the security. We illustrate such algebraic attacks in practice by means of the ciphers Bivium and Keeloq.