hi.
The reason i need ME2 is i want to bring a real nonlinear function and the ANFs have many monomials. Someone may think that functions like ME1 is nonlinear function. but i do not think so, bij
Forum: 2007 Reports
The main questions are, IF you NEED variables W32,..., W47 and WHY?
(i) If you donīt need W32, ..., W47:
Easily you can set directly W32 = ... = W47 = 0 without calculation ME2 and your algorithm
Forum: 2007 Reports
when i write the paper, i know this.
1, i get the idea at september, complete it at october. i had not think over all thing.
2, even we can find "collide" for ME2, but the system has function G, R.
Forum: 2007 Reports
2007/476: Dynamic SHA has weak expansion ME2
Note that the expansion ME2 is weak.
(i) Dynamic SHA-224/256:
For every message block M = M[0], ..., M[15], where (M[0] xor M[1]...xor M[7] = 0xfedc
Forum: 2007 Reports