Browse > Article
http://dx.doi.org/10.13089/JKIISC.2002.12.2.65

Full-Round Differential Attack on the Original Version of the Hash Function Proposed at PKC'98  

장동훈 (고려대학교 정보보호기술연구센터)
성재철 (고려대학교 정보보호기술연구센터)
이상진 (고려대학교 정보보호기술연구센터)
임종인 (고려대학교 정보보호기술연구센터)
성수학 (배재대학교 응용수학과)
Abstract
Shin et al. proposed the new hash function with 160-bit output length at PKC'98. This hash function is based on the advantages of the existing hash functions, such as SHA-1, RIPEMD-160, HAVAL, and etc.$^{[1]}$ Recently, Han et al. cryptanalyzed the hash function proposed at PKC'98 and proposed the method finding a collision pair with $2^{-30}$ probability at FSE 2002, supposing that boolean functions satisfy SAC(Strict Avalanche Criterian).$^{[2]}$ This paper improves the method and shows that we can find a collision pair from the original version of the hash function with $2^{-37.13}$ probability through the improved method. And we point out that the problem of the function comes from shift values dependent on message.
Keywords
Hash function; Boolean function SAC; Collision pair;
Citations & Related Records
연도 인용수 순위
  • Reference
1 The MD5 message digest algorithm /
[ R. Rivest ] / RFC 1321
2 HAVAL-A one-way hashing algorithm with variable length of output /
[ Y. Zhend;J. Pieprzyk;J. Sebberry ] / Advances in Cryptology-Auscrypt'92
3 A New Hash Function Based on MDx-family and Its Application to MAC /
[ S.U. Shin;K.H. Rhee;D.H. Ryu;S.J. Lee ] / Public Key Cryptography '98
4 Cryptanalysis of reduced version of HAVAL /
[ P.R. Kasselman;W.T. Penzhorn ] / Electonics Letters 6th   DOI   ScienceOn
5 Cryptanalysis of MD4 /
[ H. Dobbertin ] / Fast Software Encryption
6 /
[ H. Dobbertin ] / Cryptanalysis of MD5 Compress
7 Cryptanalysis of a Hash Function Proposed at PKC'98 /
[ D.W. Han;S.W. Park;S.T. Chee ] / Fast Software Encryption 2002
8 The MD4 message digest algorithm /
[ R. Rivest ] / RFC 1320
9 /
[] / Federal Information Processing Standards Publication 180-1