Paper 2011/202
Cycling Attacks on GCM, GHASH and Other Polynomial MACs and Hashes
Markku-Juhani O. Saarinen
Abstract
The Galois/Counter Mode (GCM) of operation has been standardized
by NIST to provide single-pass authenticated encryption.
The GHASH authentication component of GCM belongs to a
class of Wegman-Carter polynomial hashes that operate
in the field
Note: FSE 2012 Preproceedings version.
Metadata
- Available format(s)
-
PDF
- Publication info
- Published elsewhere. FSE 2012
- Keywords
- CryptanalysisGaloisCounter ModeAES-GCMCycling AttacksWeak Keys.
- Contact author(s)
- mjos @ iki fi
- History
- 2012-03-16: last of 16 revisions
- 2011-04-25: received
- See all versions
- Short URL
- https://ia.cr/2011/202
- License
-
CC BY
BibTeX
@misc{cryptoeprint:2011/202, author = {Markku-Juhani O. Saarinen}, title = {Cycling Attacks on {GCM}, {GHASH} and Other Polynomial {MACs} and Hashes}, howpublished = {Cryptology {ePrint} Archive, Paper 2011/202}, year = {2011}, url = {https://eprint.iacr.org/2011/202} }