The compression function MDC-4 is created by interconnecting two MDC-2 compression functions but only hashing one message block with them instead of two. The developers aim for MDC-4 was to offer a higher security margin, when compared to MEDC-2, but still being fast enough for practical purposes.
The MDC-2 collision security proof of Steinberger (EUROCRYPT 2007) cannot be directly applied to MDC-4 due to the structural differences. Although sharing many commonalities, our proof for MDC-4 is much shorter and we claim that our presentation is also easier to grasp.
Category / Keywords: secret-key cryptography / MDC-4, cryptographic hash function, block-cipher based, proof of security, double length, ideal cipher model Date: received 24 Feb 2012, last revised 21 Apr 2012 Contact author: christian forler at uni-weimar de Available format(s): PDF | BibTeX Citation Version: 20120421:093314 (All versions of this report) Short URL: ia.cr/2012/096 Discussion forum: Show discussion | Start new discussion