Internal differential collision attacks on the reduced-round Grøstl-0 hash function

Designs, Codes and Cryptography(2012)

引用 1|浏览0
暂无评分
摘要
We analyze the Grøstl-0 hash function, that is the version of Grøstl submitted to the SHA-3 competition. This paper extends Peyrin’s internal differential strategy, that uses differential paths between the permutations P and Q of Grøstl-0 to construct distinguishers of the compression function. This results in collision attacks and semi-free-start collision attacks on the Grøstl-0 hash function and compression function with reduced rounds. Specifically, we show collision attacks on the Grøstl-0-256 hash function reduced to 5 and 6 out of 10 rounds with time complexities 2 48 and 2 112 and on the Grøstl-0-512 hash function reduced to 6 out of 14 rounds with time complexity 2 183 . Furthermore, we demonstrate semi-free-start collision attacks on the Grøstl-0-256 compression function reduced to 8 rounds and the Grøstl-0-512 compression function reduced to 9 rounds. Finally, we show improved distinguishers for the Grøstl-0-256 permutations with reduced rounds.
更多
查看译文
关键词
Hash function,Differential cryptanalysis,Collision attack,SHA-3
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要