Bicliques for preimages: attacks on skein-512 and the SHA-2 family

  • Authors:
  • Dmitry Khovratovich;Christian Rechberger;Alexandra Savelieva

  • Affiliations:
  • Microsoft Research Redmond;DTU MAT, Denmark;National Research University Higher School of Economics, Russia

  • Venue:
  • FSE'12 Proceedings of the 19th international conference on Fast Software Encryption
  • Year:
  • 2012

Quantified Score

Hi-index 0.00

Visualization

Abstract

We present a new concept of biclique as a tool for preimage attacks, which employs many powerful techniques from differential cryptanalysis of block ciphers and hash functions. The new tool has proved to be widely applicable by inspiring many authors to publish new results of the full versions of AES, KASUMI, IDEA, and Square. In this paper, we show how our concept leads to the first cryptanalysis of the round-reduced Skein hash function, and describe an attack on the SHA-2 hash function with more rounds than before.