ridm@nrct.go.th   ระบบคลังข้อมูลงานวิจัยไทย   รายการโปรดที่คุณเลือกไว้

Distinguishers on double-branch compression Function and applications to round-reduced RIPEMD-128 and RIPEMD-160

หน่วยงาน Nanyang Technological University, Singapore

รายละเอียด

ชื่อเรื่อง : Distinguishers on double-branch compression Function and applications to round-reduced RIPEMD-128 and RIPEMD-160
นักวิจัย : Sasaki, Yu , Wang, Lei
คำค้น : DRNTU::Engineering::Computer science and engineering
หน่วยงาน : Nanyang Technological University, Singapore
ผู้ร่วมงาน : -
ปีพิมพ์ : 2557
อ้างอิง : Sasaki, Y., & Wang, L. (2014). Distinguishers on Double-Branch Compression Function and Applications to Round-Reduced RIPEMD-128 and RIPEMD-160. IEICE Transactions on Fundamentals of Electronics, Communications and Computer Sciences, E97-A (1), 177-190. , 0916-8508 , http://hdl.handle.net/10220/19335 , http://dx.doi.org/10.1587/transfun.E97.A.177
ที่มา : -
ความเชี่ยวชาญ : -
ความสัมพันธ์ : IEICE transactions on fundamentals of electronics, communications and computer sciences
ขอบเขตของเนื้อหา : -
บทคัดย่อ/คำอธิบาย :

This paper presents differential-based distinguishers against double-branch compression functions and applies them to ISO standard hash functions RIPEMD-128 and RIPEMD-160. A double-branch compression function computes two branch functions to update a chaining variable and then merges their outputs. For such a compression function, we observe that second-order differential paths will be constructed by finding a sub-path in each branch independently. This leads to 4-sum attacks on 47 steps (out of 64 steps) of RIPEMD-128 and 40 steps (out of 80 steps) of RIPEMD-160. Then new properties called a (partial) 2-dimension sum and a q-multi-second-order collision are considered. The partial 2-dimension sum is generated on 48 steps of RIPEMD-128 and 42 steps of RIPEMD-160, with complexities of 235 and 236, respectively. Theoretically, the 2-dimension sum is generated faster than the brute force attack up to 52 steps of RIPEMD-128 and 51 steps of RIPEMD-160, with complexities of 2101 and 2158, respectively. The results on RIPEMD-128 can also be viewed as q-multi-second-order collision attacks. The practical attacks have been implemented and examples are presented. We stress that our results do not impact to the security of full RIPEMD-128 and RIPEMD-160 hash functions.

บรรณานุกรม :
Sasaki, Yu , Wang, Lei . (2557). Distinguishers on double-branch compression Function and applications to round-reduced RIPEMD-128 and RIPEMD-160.
    กรุงเทพมหานคร : Nanyang Technological University, Singapore.
Sasaki, Yu , Wang, Lei . 2557. "Distinguishers on double-branch compression Function and applications to round-reduced RIPEMD-128 and RIPEMD-160".
    กรุงเทพมหานคร : Nanyang Technological University, Singapore.
Sasaki, Yu , Wang, Lei . "Distinguishers on double-branch compression Function and applications to round-reduced RIPEMD-128 and RIPEMD-160."
    กรุงเทพมหานคร : Nanyang Technological University, Singapore, 2557. Print.
Sasaki, Yu , Wang, Lei . Distinguishers on double-branch compression Function and applications to round-reduced RIPEMD-128 and RIPEMD-160. กรุงเทพมหานคร : Nanyang Technological University, Singapore; 2557.