# A Classical Introduction to Cryptography: Exercise Book by Thomas Baigneres, Pascal Junod, Yi Lu, Jean Monnerat, Serge

By Thomas Baigneres, Pascal Junod, Yi Lu, Jean Monnerat, Serge Vaudenay

TO CRYPTOGRAPHY workout publication Thomas Baignkres EPFL, Switzerland Pascal Junod EPFL, Switzerland Yi Lu EPFL, Switzerland Jean Monnerat EPFL, Switzerland Serge Vaudenay EPFL, Switzerland

**Additional info for A Classical Introduction to Cryptography: Exercise Book**

**Sample text**

3). Just as cascade of block ciphers consists in concatenating block ciphers, multiple modes of operation consist in concatenating modes of operations. 4). lie lie. Note that two independent keys are used here, one in the CBC mode, the other in the CFB mode. , that the block length is larger than the key length) and that all the IV 's are known to the adversary. For simplicity, we denote Eki and Dki by Ei and Di respectively. 3. 4. 4. 5. We are going to mount a chosen plaintext attack against it.

If it happens that yi = yj (which is a collision), we deduce that y+l$ xi = yj-1 $ x j which leads to yi-1 a3 yj-1 = xi a3 xj. Hence, we can thus deduce some plaintext information from the value yi-1 $ yj-1. The complexity corresponds to the expected number of blocks after which we can expect a collision (see Exercise 1, Chapter 3). , @ = 232. We note that the complexity of this attack is not increased by using 3DES instead of DES as the block size remains the same. In order to thwart this attack, we thus need to enlarge the block size.

Each LFSR has one clocking tap: R1[8], R2[10], and R3[10]. 8): The three LFSRs make a clocking vote according to the majority of the current three clocking taps. Each Ri compares the voting result with its own clocking tap. , the feedback for R1, R2, and RQ is EXERCISE BOOK 30 - the content of all cells in Ri (except the leftmost) are shifted to the left by one position simultaneously; - Ri[O] is updated by the precomputed feedback; I 18 13 0 8 R1 I LI I 21 output I 4 I 63 1:o - & tA ( I I I 1 I I I I I I I I I I I I / l I I I I R 2 I rn I I 22 LO 7 0 4 0 I I I I I l a u majority control I R3 .