International Association for Cryptologic Research

International Association
for Cryptologic Research

CryptoDB

A Linearization Attack on the Bluetooth Key Stream Generator

Authors:
Frederik Armknecht
Download:
URL: http://eprint.iacr.org/2002/191
Search ePrint
Search Google
Abstract: In this paper we propose an attack on the key stream generator underlying the encryption system $E_0$ used in the Bluetooth specification. We show that the initial value can be recovered by solving a system of nonlinear equations of degree 4 over the finite field GF(2). This system of equations can be transformed by linearization into a system of linear equations with at most $2^{24.056}$ unknowns. To our knowledge, this is the best attack on the key stream generator underlying the $\mbox{E}_0$ yet.
BibTeX
@misc{eprint-2002-11714,
  title={A Linearization Attack on the Bluetooth Key Stream Generator},
  booktitle={IACR Eprint archive},
  keywords={secret-key cryptography / stream cipher, Bluetooth, linearization attack, XL algorithm, XSL algorithm},
  url={http://eprint.iacr.org/2002/191},
  note={ armknecht@th.informatik.uni-mannheim.de 12034 received 13 Dec 2002},
  author={Frederik Armknecht},
  year=2002
}