Truncated differential characteristics with minimum number of active bytes for simplified Whirlpool
Prikladnaya Diskretnaya Matematika. Supplement, no. 5 (2012), pp. 41-43
Citer cet article
Voir la notice de l'article provenant de la source Math-Net.Ru
In this paper, a truncated differential characteristics with minimum number of active bytes is built to produce a collision for two reduced variants of the hash function Whirlpool: with 1 and 2 rounds in the underlying block-cypher instead of 14. For the first variant this number equals 23, for the second one – 45. The probabilities of these characteristics are maximal and equal $2^{-115}$ and $2^{-225}$ respectively.
[1] Barreto P. S. L. M., Rijmen V., The Whirlpool Hashing Function, Submitted to NESSIE (September 2000) (Revised May 2003) , (2008/12/11) http://www.larc.usp.br/~pbarreto/WhirlpoolPage.html
[2] Information technology – Security techniques – Hash-functions. Part 3: Dedicated hash-functions, ISO/IEC 10118-3:2004, 2004
[3] Lamberger M., Mendel F., Rechberger C., et al., The Rebound Attack and Subspace Distinguishers: Application to Whirlpool, Cryptology ePrint archive, Report 2010/198 , 2010 http://eprint.iacr.org/2010/198