Paper 2010/198

The Rebound Attack and Subspace Distinguishers: Application to Whirlpool

Mario Lamberger, Florian Mendel, Christian Rechberger, Vincent Rijmen, and Martin Schläffer

Abstract

We introduce the rebound attack as a variant of differential cryptanalysis on hash functions and apply it to the hash function Whirlpool, standardized by ISO/IEC. We give attacks on reduced variants of the Whirlpool hash function and the Whirlpool compression function. Next, we introduce the subspace problems as generalizations of near-collision resistance. Finally, we present distinguishers based on the rebound attack, that apply to the full compression function of Whirlpool and the underlying block cipher $W$.

Metadata
Available format(s)
PDF
Category
Secret-key cryptography
Publication info
Published elsewhere. Submitted to a journal
Keywords
hash functionscryptanalysisnear-collisiondistinguisher
Contact author(s)
mario lamberger @ iaik tugraz at
History
2010-04-09: received
Short URL
https://ia.cr/2010/198
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2010/198,
      author = {Mario Lamberger and Florian Mendel and Christian Rechberger and Vincent Rijmen and Martin Schläffer},
      title = {The Rebound Attack and Subspace Distinguishers: Application to Whirlpool},
      howpublished = {Cryptology {ePrint} Archive, Paper 2010/198},
      year = {2010},
      url = {https://eprint.iacr.org/2010/198}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.