Paper 2013/648

Integral Distinguishers for Reduced-round Stribog

Riham AlTawy and Amr M. Youssef

Abstract

In January 2013, the Stribog hash function officially replaced GOST R 34.11-94 as the new Russian cryptographic hash standard GOST R 34.11-2012. Stribog is an AES-based primitive and is considered as an asymmetric reply to the new SHA-3 selected by NIST. In this paper we investigate the structural integral properties of reduced version of the Stribog compression function and its internal permutation. Specifically, we present a forward and backward higher order integrals that can be used to distinguish 4 and 3.5 rounds, respectively. Moreover, using the start from the middle approach, we combine the two proposed integrals to get 6.5-round and 7.5-round distinguishers for the internal permutation and 6-round and 7-round distinguishers for the compression function.

Metadata
Available format(s)
PDF
Category
Secret-key cryptography
Publication info
Published elsewhere. Minor revision. IPL 2013
Keywords
CryptanalysisHash functionsStart from the middleIntegral distinguisherGOST R 34.11-2012Stribog
Contact author(s)
rihammahdy @ hotmail com
History
2014-01-17: last of 2 revisions
2013-10-15: received
See all versions
Short URL
https://ia.cr/2013/648
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2013/648,
      author = {Riham AlTawy and Amr M.  Youssef},
      title = {Integral Distinguishers for Reduced-round Stribog},
      howpublished = {Cryptology ePrint Archive, Paper 2013/648},
      year = {2013},
      note = {\url{https://eprint.iacr.org/2013/648}},
      url = {https://eprint.iacr.org/2013/648}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.