Paper 2007/277

Cryptanalysis of a class of cryptographic hash functions

Praveen Gauravaram and John Kelsey

Abstract

We apply new cryptanalytical techniques to perform the generic multi-block multicollision, second preimage and herding attacks on the Damgård-Merkle hash functions with linear-XOR/additive checksums. The computational work required to perform these attacks on the Damgård-Merkle hash functions with linear-XOR/additive checksum of message blocks (GOST), intermediate states (\textbf{3C}, MAELSTROM-0, F-Hash) or both is only a little more than what is required on the Damgård-Merkle hash functions. Our generic attacks on GOST answers the open question of Hoch and Shamir at FSE 2006 on the security of the iterated hash functions with the linear mixing of message blocks.

Note: Any comments on the paper are welcome.

Metadata
Available format(s)
PDF PS
Publication info
Published elsewhere. Unknown where it was published
Keywords
Cryptographic hash functions
Contact author(s)
p gauravaram @ gmail com
History
2007-11-16: revised
2007-08-07: received
See all versions
Short URL
https://ia.cr/2007/277
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2007/277,
      author = {Praveen Gauravaram and John Kelsey},
      title = {Cryptanalysis of a class of cryptographic hash functions},
      howpublished = {Cryptology {ePrint} Archive, Paper 2007/277},
      year = {2007},
      url = {https://eprint.iacr.org/2007/277}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.