Improved Collision Attacks on the Reduced-Round Grostl Hash Function

被引:0
作者
Ideguchi, Kota [1 ]
Tischhauser, Elmar [1 ]
Preneel, Bart [1 ]
机构
[1] Katholieke Univ Leuven, ESAT COSIC, B-3001 Heverlee, Belgium
来源
INFORMATION SECURITY | 2011年 / 6531卷
关键词
Hash Function; Differential Cryptanalysis; SHA-3; COMPRESSION FUNCTION; CRYPTANALYSIS; AES; WHIRLPOOL; SHA-1;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
We analyze the Grostl hash function, which is a 2nd-round candidate of the SHA-3 competition. Using the start-from-the-middle variant of the rebound technique, we show collision attacks on the Grostl-256 hash function reduced to 5 and 6 out of 10 rounds with time complexities 248 and 21127 respectively. Furthermore, we demonstrate semi-free-start collision attacks on the Grostl-224 and -256 hash functions reduced to 7 rounds and the Grostl-224 and -256 compression functions reduced to 8 rounds. Our attacks are based on differential paths between the two permutations P and Q of Grostl, a strategy introduced by Peyrin to construct distinguishers for the compression function. In this paper, we extend this approach to construct collision and semi-free-start collision attacks for both the hash and the compression function. Finally, we present improved distinguishers for reduced-round versions of the Grostl-224 and -256 permutations.
引用
收藏
页码:1 / 16
页数:16
相关论文
共 17 条
  • [1] Daemen J, 2006, LECT NOTES COMPUT SC, V4116, P78
  • [2] Daemen Joan., 2001, DESIGN RIJNDAEL
  • [3] Plateau characteristics
    Daerrien, J.
    Rijmen, V.
    [J]. IET INFORMATION SECURITY, 2007, 1 (01) : 11 - 17
  • [4] De Cannière C, 2006, LECT NOTES COMPUT SC, V4284, P1
  • [5] Gauravaram P., 2008, GROSTL SHA 3 CANDIDA
  • [6] Gilbert H, 2010, LECT NOTES COMPUT SC, V6147, P365, DOI 10.1007/978-3-642-13858-4_21
  • [7] Knudsen L. R., 1995, Fast Software Encryption. Second International Workshop. Proceedings, P196
  • [8] Knuth D. E., ART COMPUTER PROGRAM, V2
  • [9] Lamberger M., 2010198 CRYPT EPRINT
  • [10] Lamberger M, 2009, LECT NOTES COMPUT SC, V5912, P126, DOI 10.1007/978-3-642-10366-7_8