Publication Type: Journal Article
Source: Information & Security: An International Journal, Volume 37, p.45-53 (2017)
, authenticated encryption
, block cypher
Leakage-resilient authenticated encryption (AE) aims at privacy and authenticity against adversaries with an additional side channel. The first published “leakage resilient” AE scheme is the RCB block cipher mode. As it turns out, RCB is insecure, even if there is no side channel for the adversary. The current paper presents several attacks on RCB.