期刊文献+

MD5碰撞攻击中的充要条件集 被引量:8

Set of Necessary and Sufficient Conditions in Collision Attacks on MD5
下载PDF
导出
摘要 通过分析MD5中非线性函数的性质以及模232减差分和异或差分的性质,证明了Liang Jie和Lai Xuejia给出的产生MD5碰撞的充分条件集中的条件是保证第23~62步的差分路径满足的充要条件,给出了保证第63、64步的输出差分满足的充要条件集.利用得到的充要条件集,提出了对MD5的改进的碰撞攻击算法,该算法的平均计算复杂度约为已有碰撞攻击算法的0.7187倍,并通过实验对该算法的改进效果进行了验证. By analyzing the properties of the nonlinear functions used in MD5 and the differences in terms of XOR and subtraction modulo 2^32, this paper proves that some sufficient conditions presented by Liang Jie and Lai Xuejia are also necessary to guarantee the differential path from the 23rd step to the 62nd step and give a set of necessary and sufficient conditions to guarantee the output differences of the last two steps. Then, according to the set of necessary and sufficient conditions this paper presents an improved collision attack algorithm on MDS. Finally, it analyzes the average computational complexity of the attack algorithm which is 0.718 7 times of that of the previous collision attack algorithms and proves the efficiency of the improved algorithm by computer simulations.
出处 《软件学报》 EI CSCD 北大核心 2009年第6期1617-1624,共8页 Journal of Software
基金 河南省杰出青年科学基金No.0312001800~~
关键词 MD5 充要条件集 碰撞攻击 差分路径 MD5 a set of necessary and sufficient conditions collision attack differential path
  • 相关文献

参考文献1

二级参考文献8

  • 1王小云,张全清.MD_5报文摘要算法的各圈函数碰撞分析[J].计算机工程与科学,1996,18(2):15-22. 被引量:13
  • 2Wang Xiaoyun,Feng Dengguo,Lai Xuejia,et al.Collisions for Hash Functions MD4,MD5,HAVAL-128 and RIPEMD[EB/OL].http://eprint.iacr.org/2004/199.pdf,2005-01.
  • 3Mikle O.Practical Attacks on Digital Signatures Using MD5 Message Digest[EB/OL].http://eprint.iacr.org/2004/356.pdf,2005-01.
  • 4Berson T.Differential Cryptanalysis Mod 232 with Applications to MD5[A].EUROCRYPT'92[C].1992.71-80.
  • 5Den Boer B,Bosselaers A.Collisions for the Compression Function of MD5[A].EUROCRYPTO'93[C].1993.
  • 6Rivest R L.The MD5 Message Digest Algorithm.Request for Comments[S].RFC 1321,1992.
  • 7Wang Xiaoyun,Yu Hongbo.How to Break MD5 and Other Hash Functions[A].EUROCRYPTO'05[C].2005.
  • 8Rivest R L.The MD4 Message Digest Algorithm[A].CRYPTO'90[C].1991.303-311.

共引文献13

同被引文献76

引证文献8

二级引证文献29

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部