Cryptology ePrint Archive: Report 2013/648

Integral Distinguishers for Reduced-round Stribog

Riham AlTawy and Amr M. Youssef

Abstract: In January 2013, the Stribog hash function officially replaced GOST R 34.11-94 as the new Russian cryptographic hash standard GOST R 34.11-2012. Stribog is an AES-based primitive and is considered as an asymmetric reply to the new SHA-3 selected by NIST. In this paper we investigate the structural integral properties of reduced version of the Stribog compression function and its internal permutation. Specifically, we present a forward and backward higher order integrals that can be used to distinguish 4 and 3.5 rounds, respectively. Moreover, using the start from the middle approach, we combine the two proposed integrals to get 6.5-round and 7.5-round distinguishers for the internal permutation and 6-round and 7-round distinguishers for the compression function.

Category / Keywords: secret-key cryptography / Cryptanalysis, Hash functions, Start from the middle, Integral distinguisher, GOST R 34.11-2012, Stribog

Original Publication (with minor differences): IPL 2013

Date: received 8 Oct 2013, last revised 16 Jan 2014

Contact author: rihammahdy at hotmail com

Available format(s): PDF | BibTeX Citation

Version: 20140117:024214 (All versions of this report)

Short URL:

[ Cryptology ePrint archive ]