Högskolan i Skövde

his.sePublications
Change search
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • apa-cv
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf
Breaking HALFLOOP-24
University of Skövde, School of Informatics. University of Skövde, Informatics Research Environment. Swedish Defence University, Stockholm, Sweden. (Information Systems)ORCID iD: 0000-0001-9246-0263
Univ Rennes, Centre National de la Recherche Scientifique (CNRS), Institut de Recherche en Informatique et Systèmes Aléatoires (IRISA), Rennes, France.
Ruhr University Bochum, Germany.
Ruhr University Bochum, Germany.
2022 (English)In: IACR Transactions on Symmetric Cryptology, ISSN 2519-173X, no 3, p. 217-238Article in journal (Refereed) Published
Abstract [en]

HALFLOOP-24 is a tweakable block cipher that is used to protect automatic link establishment messages in high frequency radio, a technology commonly used by government agencies and industries that need highly robust long-distance communications. We present the first public cryptanalysis of HALFLOOP-24 and show that HALFLOOP-24, despite its key size of 128 bits, is far from providing 128 bit security. More precisely, we give attacks for ciphertext-only, known-plaintext, chosen-plaintext and chosen-ciphertext scenarios. In terms of their complexities, most of them can be considered practical. However, in the real world, the amount of available data is too low for our attacks to work. Our strongest attack, a boomerang key-recovery, finds the first round key with less than 210 encryption and decryption queries. In conclusion, we strongly advise against using HALFLOOP-24.

Place, publisher, year, edition, pages
Bochum: Ruhr-Universität Bochum , 2022. no 3, p. 217-238
Keywords [en]
HF Radio, ALE, HALFLOOP, Boomerang
National Category
Other Mathematics
Research subject
Information Systems
Identifiers
URN: urn:nbn:se:his:diva-21813DOI: 10.46586/tosc.v2022.i3.217-238ISI: 000869410400008Scopus ID: 2-s2.0-85137670245OAI: oai:DiVA.org:his-21813DiVA, id: diva2:1695175
Conference
Fast Software Encryption (FSE) 2023, Beijing, China, March 20-24, 2023
Funder
German Research Foundation (DFG), EXC 2092 CASA - 390781972
Note

CC BY 4.0

This work was funded by the Deutsche Forschungsgemeinschaft (DFG, German Research Foundation) under Germany’s Excellence Strategy - EXC 2092 CASA - 390781972.

Available from: 2022-09-13 Created: 2022-09-13 Last updated: 2026-02-03Bibliographically approved
In thesis
1. Understanding Security in Special-Purpose Digital Radio Communication Systems
Open this publication in new window or tab >>Understanding Security in Special-Purpose Digital Radio Communication Systems
2025 (English)Doctoral thesis, comprehensive summary (Other academic)
Abstract [en]

Activities that have specialized communication needs which cannot be met by general communication systems such as mobile telephony or wireless networking need specialized communication systems. The thesis investigates the special-purpose digital radio communication systems that have been created to meet specialized needs across a range of fields. Since many of the fields where these communication systems are used are part of critical infrastructures and other important operations, the security of the communication systems may be vital to the security of the operations they support. Despite this, special-purpose digital radio communication systems often have significantly lower levels of security than more commonly used systems, such as mobile telephony or Internet-based protocols. The thesis defines special-purpose digital radio communication systems as a class of systems that, while differing in many ways, have common security properties. The common security themes among the different systems are investigated through focused case studies on two standards: Automatic Link Establishment (ALE) for high-frequency radio and TETRA, a trunked cellular professional mobile radio standard. The case study on ALE uses cryptanalysis to find weaknesses in the cryptography specified by the standard, mirroring similar weaknesses in other standards. In the TETRA case, qualitative interviews reveal how organizations that own TETRA networks make security-related decisions regarding them. The thesis proposes a number of possible explanations for the low level of security in special-purpose digital radio communication systems: lack of security by design, deficient understanding of system dependencies, normal accident dynamics, lack of feedback, and market structure. The thesis is the first to consider the different standards as members of a single class of systems and point out the commonalities.

Abstract [sv]

Verksamheter vars kommunikationsbehov inte tillfredsställs av generella kommunikationssystem som exempelvis mobiltelefoni eller trådlösa nätverk behöver särskilda kommunikationssystem. Avhandlingen undersöker de digitala radiokommunikationssystem för särskilda ändamål som skapats för att möta de särskilda kommunikationsbehov som finns i många områden. Eftersom flera av de områden som använder de ifrågavarande kommunikationssystemen är del av kritiska infrastrukturer eller andra viktiga verksamheter är säkerhet i kommunikationssystemen av vikt för säkerheten i verksamheterna som helhet. Trots detta har digitala radiokommunikationssystem för särskilda behov ofta signifikant lägre säkerhetsnivå än mer spridda system, som exempelvis internetbaserade protokoll. Avhandlingen definierar digitala radiokommunikationssystem för särskilda behov som en grupp system som, trots att de är olika på många sätt, delar gemensamma säkerhetsegenskaper. De gemensamma egenskaperna undersöks genom fallstudier på två standarder: Automatic Link Establishment (ALE), en standard för länketablering för kortvågsradio, och TETRA, en standard för trunkad cellulär kommunikationsradio. I fallstudien av ALE används kryptoanalys för att upptäcka svagheter i kryptografiska funktioner som specificeras i standarden, vilket återspeglar liknande sårbarheter i andra standarder. I fallet med TETRA används kvalitativa intervjuer för att visa hur organisationer som äger TETRA-nätverk tar säkerhetsrelaterade beslut rörande dem. Avhandlingen föreslår ett antal möjliga förklaringar för den låga säkerhetsnivån i digitala radiokommunikationssystem för särskilda behov: ingen inbyggd säkerhet, bristande förståelse för systemberoenden, systemolyckedynamik, brist på återkoppling och marknadsstruktur. Avhandlingen är den första som behandlar de olika standarderna som tillhörande en enda grupp av system och att identifiera likheterna.

Place, publisher, year, edition, pages
Skövde: University of Skövde, 2025. p. xvi, 188
Series
Dissertation Series ; 68
National Category
Information Systems
Research subject
Information Systems
Identifiers
urn:nbn:se:his:diva-26139 (URN)978-91-989080-9-1 (ISBN)978-91-989081-0-7 (ISBN)
Public defence
2026-04-14, L52, Drottning Kristinas väg 30, Stockholm, 13:00 (English)
Opponent
Supervisors
Available from: 2026-02-04 Created: 2026-02-03 Last updated: 2026-02-04Bibliographically approved

Open Access in DiVA

fulltext(628 kB)171 downloads
File information
File name FULLTEXT01.pdfFile size 628 kBChecksum SHA-512
e0e88ed83ed89831be9d7330b77efbf24b6f5185f457a9849313a518b2b8f4e12e1cff3e7c8a8e5babf99da9ff4c300183f1f008ac916a81a8e6e09010e50616
Type fulltextMimetype application/pdf

Other links

Publisher's full textScopus

Authority records

Dansarie, Marcus

Search in DiVA

By author/editor
Dansarie, Marcus
By organisation
School of InformaticsInformatics Research Environment
Other Mathematics

Search outside of DiVA

GoogleGoogle Scholar
Total: 173 downloads
The number of downloads is the sum of all downloads of full texts. It may include eg previous versions that are now no longer available

doi
urn-nbn

Altmetric score

doi
urn-nbn
Total: 361 hits
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • apa-cv
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf