The Collision Intractability of MDC-2 in the Ideal Cipher Model

John P Steinberger

Abstract: We provide the first proof of security for MDC-2, the most well-known construction for turning an n-bit blockcipher into a 2n-bit cryptographic hash function.

