首页> 外文会议>International Workshop on Fast Software Encryption >Improved Rebound Attack on the Finalist Gr?stl
【24h】

Improved Rebound Attack on the Finalist Gr?stl

机译:对决赛遗传学讲解的反弹攻击改善了吗?

获取原文

摘要

Gr?stl is one of the five finalist hash functions of the SHA-3 competition. For entering this final phase, the designers have tweaked the submitted versions. This tweak renders inapplicable the best known distinguishers on the compression function presented by Peyrin [18] that exploited the internal permutation properties. Since the beginning of the final round, very few analysis have been published on Gr?stl. Currently, the best known rebound-based results on the permutation and the compression function for the 256-bit version work up to 8 rounds, and up to 7 rounds for the 512-bit version. In this paper, we present new rebound distinguishers that work on a higher number of rounds for the permutations of both 256 and 512-bit versions of this finalist, that is 9 and 10 respectively. Our distinguishers make use of an algorithm that we propose for solving three fully active states in the middle of the differential characteristic, while the Super-Sbox technique only handles two.
机译:GR?STL是SHA-3竞争的五个决赛哈希职能之一。为了进入这个最后阶段,设计人员调整了提交的版本。该调整渲染可在佩林[18]中呈现的压缩功能上不适当的最佳已知区分器可不适用。自决赛开始以来,在GR的情况下发表了很少的分析?STL。目前,在512位版本的256位版本的排列中最受知名的基于反弹的结果和压缩功能工作最多8轮,以及512位版本最多7轮。在本文中,我们展示了新的反弹区别,以便分别为256和512位版本的第256和512位版本的排列,即分别为9和10。我们的区分器利用了一种算法,我们建议在差分特性中求解三个完全活跃的状态,而超级SBOX技术只处理两个。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号