Cryptanalysis of RadioGatun

Thomas Fuhr and Thomas Peyrin

Abstract: In this paper we study the security of the RadioGatun family of hash functions, and more precisely the collision resistance of this proposal. We show that it is possible to find differential paths with acceptable probability of success. Then, by using the freedom degrees available from the incoming message words, we provide a significant improvement over the best previously known cryptanalysis. As a proof of concept, we provide a colliding pair of messages for RadioGatun with 2-bit words. We finally argue that, under some light assumption, our technique is very likely to provide the first collision attack on RadioGatun.

Category / Keywords: hash functions, RadioGatun, cryptanalysis

Publication Info: submitted

Date: received 4 Dec 2008, last revised 19 Dec 2008

Contact author: thomas peyrin at gmail com

Note: corrected display errors in the differential path tables, modified the introduction

Version: 20081219:164540 (All versions of this report)

