Abstract:
Introduced in 2022 as a security-enhanced modification of XTS mode with improved operational properties compared with the standardized DEC mode, the XEH block cipher mode is designed for full-disk encryption systems. In this paper, we demonstrate its reducibility to ECB mode under chosen-plaintext attacks. The proposed method has time complexity $O((n+1) 2^{l})$ and succeeds with probability 1.