Paper 2005/151

Improved Collision Attack on MD4

Yusuke Naito, Yu Sasaki, Noboru Kunihiro, and Kazuo Ohta


In this paper, we propose an attack method to find collisions of MD4 hash function. This attack is the improved version of the attack which was invented by Xiaoyun Wang et al [1]. We were able to find collisions with probability almost 1, and the average complexity to find a collision is upper bounded by three times of MD4 hash operations. This result is improved compared to the original result of [1] where the probability were from $2^{-6}$ to $2^{-2}$, and the average complexity to find a collision was upper bounded by $2^8$ MD4 hash operations. We also point out the lack of sufficient conditions and imprecise modifications for the original attack in [1].

Available format(s)
Secret-key cryptography
Publication info
Published elsewhere. Unknown where it was published
Collision AttackMD4Hash FunctionMessage Modification
Contact author(s)
tolucky @ ice uec ac jp
2005-05-26: received
Short URL
Creative Commons Attribution


      author = {Yusuke Naito and Yu Sasaki and Noboru Kunihiro and Kazuo Ohta},
      title = {Improved Collision Attack on {MD4}},
      howpublished = {Cryptology ePrint Archive, Paper 2005/151},
      year = {2005},
      note = {\url{}},
      url = {}
Note: In order to protect the privacy of readers, does not use cookies or embedded third party content.