Welcome!
To use the personalized features of this site, please log in or register.
If you have forgotten your username or password, we can help.
My Menu
Saved Items

Slide Attacks on a Class of Hash Functions

Michael GorskiContact Information, Stefan LucksContact Information and Thomas PeyrinContact Information

(2)  Bauhaus-University Weimar,  
(3)  Orange Labs and University of Versailles,  
Abstract
This paper studies the application of slide attacks to hash functions. Slide attacks have mostly been used for block cipher cryptanalysis. But, as shown in the current paper, they also form a potential threat for hash functions, namely for sponge-function like structures. As it turns out, certain constructions for hash-function-based MACs can be vulnerable to forgery and even to key recovery attacks. In other cases, we can at least distinguish a given hash function from a random oracle.
To illustrate our results, we describe attacks against the Grindahl-256 and Grindahl-512 hash functions. To the best of our knowledge, this is the first cryptanalytic result on Grindahl-512. Furthermore, we point out a slide-based distinguisher attack on a slightly modified version of RadioGatún. We finally discuss simple countermeasures as a defense against slide attacks.

Keywords  slide attacks - hash function -  Grindahl  -  RadioGatún  - MAC - sponge function


Contact Information Michael Gorski
Email: Michael.Gorski@uni-weimar.de

Contact Information Stefan Lucks
Email: Stefan.Lucks@uni-weimar.de

Contact Information Thomas Peyrin
Email: Thomas.Peyrin@gmail.com
Fulltext Preview (Small, Large)
Image of the first page of the fulltext

References secured to subscribers.



Export this chapter
Export this chapter as RIS | Text
 
Remote Address: 38.107.191.110 • Server: mpweb04
HTTP User Agent: CCBot/1.0 (+http://www.commoncrawl.org/bot.html)