Weaknesses in the SL2(IFs2) Hashing Scheme

  • Authors:
  • Rainer Steinwandt;Markus Grassl;Willi Geiselmann;Thomas Beth

  • Affiliations:
  • -;-;-;-

  • Venue:
  • CRYPTO '00 Proceedings of the 20th Annual International Cryptology Conference on Advances in Cryptology
  • Year:
  • 2000

Quantified Score

Hi-index 0.00

Visualization

Abstract

We show that for various choices of the parameters in the SL2(IF2n) hashing scheme, suggested by Tillich and ZÉmor, messages can be modified without changing the hash value. Moreover, examples of hash functions "with a trapdoor" within this family are given. Due to these weaknesses one should impose at least certain restrictions on the allowed parameter values when using the SL2(IF2n) hashing scheme for cryptographic purposes.