RC4 improvement idea

jamesd at echeque.com jamesd at echeque.com
Sat Apr 13 06:14:08 PDT 1996


<jamesd at echeque.com> wrote:
> > Such keys are not weak.

At 02:57 AM 4/9/96 -0700, David Wagner wrote:
> No, the report was right: the weak keys are real.
>
> For one key in 256, you have a 13.6% chance of recovering 16 bits of
> the original key.
>
> On average, the work factor per key recovered is reduced by a factor
> of 35 (i.e. the effective keylength is reduced by 5.1 bits) by using
> this class of weak keys.

Why do you not just assume the last byte of the key is 0x4A

Then for one key in 256 the effective keylength is reduced by a
whole 8 bits instead of a measly 5.1 bits.
 ---------------------------------------------------------------------
              				|  
We have the right to defend ourselves	|   http://www.jim.com/jamesd/
and our property, because of the kind	|  
of animals that we are. True law	|   James A. Donald
derives from this right, not from the	|  
arbitrary power of the state.		|   jamesd at echeque.com







More information about the cypherpunks-legacy mailing list