1st International ICST Conference on Security and Privacy for Emerging Areas in Communication Networks

Research Article

Uniform Framework for Cryptanalysis of the Bluetooth E₀ Cipher

  • @INPROCEEDINGS{10.1109/SECURECOMM.2005.1,
        author={ O.  Levy and  A.  Wool},
        title={Uniform Framework for Cryptanalysis of the Bluetooth E₀ Cipher},
        proceedings={1st International ICST Conference on Security and Privacy for Emerging Areas in Communication Networks},
        publisher={IEEE},
        proceedings_a={SECURECOMM},
        year={2006},
        month={3},
        keywords={},
        doi={10.1109/SECURECOMM.2005.1}
    }
    
  • O. Levy
    A. Wool
    Year: 2006
    Uniform Framework for Cryptanalysis of the Bluetooth E₀ Cipher
    SECURECOMM
    IEEE
    DOI: 10.1109/SECURECOMM.2005.1
O. Levy1, A. Wool1
  • 1: Tel Aviv University, Israel

Abstract

In this paper we analyze the E₀ cipher, which is the encryption system used in the Bluetooth specification. We suggest a uniform framework for cryptanalysis of the E₀ cipher. Our method requires 128 known bits of the keystream in order to recover the initial state of the LFSRs, which reflects the secret key of this encryption engine. In one setting, our framework reduces to an attack of D. Bleichenbacher. In another setting, our framework is equivalent to an attack presented by Fluhrer and Lucks. Our best attack can recover the initial state of the LFSRs after solving 2⁸⁶ boolean linear systems of equations, which is roughly equivalent to the results obtained by Fluhrer and Lucks.