{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,2,26]],"date-time":"2026-02-26T15:58:24Z","timestamp":1772121504403,"version":"3.50.1"},"reference-count":8,"publisher":"Wiley","license":[{"start":{"date-parts":[[2019,7,1]],"date-time":"2019-07-01T00:00:00Z","timestamp":1561939200000},"content-version":"unspecified","delay-in-days":0,"URL":"http:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["Security and Communication Networks"],"published-print":{"date-parts":[[2019,7,1]]},"abstract":"<jats:p>In this paper, we show that stream ciphers with a particular form of ciphertext output function are vulnerable to differential fault attacks using random faults. The CAESAR competition candidates Tiaoxin-346 and AEGIS-128L both fall into this category, and we show that our attack can be used to recover the secret key of Tiaoxin-346 and the entire state of AEGIS-128L with practical complexity. In the case of AEGIS-128L, the attack can be applied in a ciphertext-only scenario. Our attacks are more practical than previous fault attacks on these ciphers, which assumed bit-flipping faults. Although we also consider other ways of mitigating our attacks, we recommend that cipher designers avoid the form of ciphertext output function that we have identified.<\/jats:p>","DOI":"10.1155\/2019\/1680263","type":"journal-article","created":{"date-parts":[[2019,7,1]],"date-time":"2019-07-01T19:33:20Z","timestamp":1562009600000},"page":"1-12","source":"Crossref","is-referenced-by-count":12,"title":["Random Fault Attacks on a Class of Stream Ciphers"],"prefix":"10.1155","volume":"2019","author":[{"ORCID":"https:\/\/orcid.org\/0000-0003-4347-0144","authenticated-orcid":true,"given":"Harry","family":"Bartlett","sequence":"first","affiliation":[{"name":"Science and Engineering Faculty, Queensland University of Technology, Brisbane, Australia"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Ed","family":"Dawson","sequence":"additional","affiliation":[{"name":"Science and Engineering Faculty, Queensland University of Technology, Brisbane, Australia"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Hassan","family":"Qahur Al Mahri","sequence":"additional","affiliation":[{"name":"Science and Engineering Faculty, Queensland University of Technology, Brisbane, Australia"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Md. Iftekhar","family":"Salam","sequence":"additional","affiliation":[{"name":"School of Electrical and Computer Engineering, Xiamen University Malaysia, Selangor, Malaysia"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Leonie","family":"Simpson","sequence":"additional","affiliation":[{"name":"Science and Engineering Faculty, Queensland University of Technology, Brisbane, Australia"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Kenneth Koon-Ho","family":"Wong","sequence":"additional","affiliation":[{"name":"Science and Engineering Faculty, Queensland University of Technology, Brisbane, Australia"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"311","reference":[{"key":"6","doi-asserted-by":"publisher","DOI":"10.1007\/978-981-10-2738-3_7"},{"key":"8","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-662-04722-4"},{"key":"9","doi-asserted-by":"publisher","DOI":"10.1007\/3-540-69053-0_4"},{"key":"10","doi-asserted-by":"publisher","DOI":"10.1007\/BFb0052259"},{"key":"11","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-45126-6_12"},{"key":"12","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"crossref","first-page":"224","DOI":"10.1007\/978-3-642-21040-2_15","volume-title":"Differential fault analysis of the Advanced Encryption Standard using a single fault","volume":"6633","year":"2011"},{"key":"13","doi-asserted-by":"publisher","DOI":"10.1109\/JPROC.2012.2188769"},{"key":"14","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"crossref","first-page":"2","DOI":"10.1007\/3-540-36400-5_2","volume-title":"Optical fault induction attacks","volume":"2523","year":"2003"}],"container-title":["Security and Communication Networks"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/downloads.hindawi.com\/journals\/scn\/2019\/1680263.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/downloads.hindawi.com\/journals\/scn\/2019\/1680263.xml","content-type":"application\/xml","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/downloads.hindawi.com\/journals\/scn\/2019\/1680263.pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,7,1]],"date-time":"2019-07-01T19:33:23Z","timestamp":1562009603000},"score":1,"resource":{"primary":{"URL":"https:\/\/www.hindawi.com\/journals\/scn\/2019\/1680263\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2019,7,1]]},"references-count":8,"alternative-id":["1680263","1680263"],"URL":"https:\/\/doi.org\/10.1155\/2019\/1680263","relation":{},"ISSN":["1939-0114","1939-0122"],"issn-type":[{"value":"1939-0114","type":"print"},{"value":"1939-0122","type":"electronic"}],"subject":[],"published":{"date-parts":[[2019,7,1]]}}}