Cryptology ePrint Archive: Report 2010/193
Speeding Up The Widepipe: Secure and Fast Hashing
Mridul Nandi and Souradyuti Paul
Abstract: In this paper we propose a new sequential mode of operation -- the \emph{Fast wide pipe} or FWP for short -- to hash
messages of arbitrary length. The mode is shown to be (1)
\emph{preimage-resistance preserving}, (2)
\emph{collision-resistance-preserving} and, most importantly, (3)
\emph{indifferentiable} from a random oracle up to $\mathcal{O}(2^{n/2})$
compression function invocations. In addition, our rigorous investigation suggests that
any variants of Joux's multi-collision, Kelsey-Schneier 2nd preimage and
Herding attack are also ineffective on this mode. This fact leads us to conjecture that the indifferentiability security bound of FWP can be extended beyond the birthday barrier. From the point of view of efficiency, this new mode, for example, is \textit{always} faster than the Wide-pipe mode when both modes use an identical compression function. In particular, it is nearly twice as fast as the Wide-pipe for a reasonable selection of the input and output size of the compression function. We also compare the FWP with several other modes of operation.
Category / Keywords:
Publication Info: A shorter version was published in Indocrypt 2010.
Date: received 7 Apr 2010, last revised 23 Dec 2010
Contact author: souradyuti paul at nist gov
Available formats: PDF | BibTeX Citation
Version: 20101224:020149 (All versions of this report)
Discussion forum: Show discussion | Start new discussion
[ Cryptology ePrint archive ]