[47387] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

Re: interesting HMAC attack results

daemon@ATHENA.MIT.EDU (Alexander Klimov)
Thu Sep 28 09:28:18 2006

X-Original-To: cryptography@metzdowd.com
X-Original-To: cryptography@metzdowd.com
Date: Tue, 26 Sep 2006 15:10:12 +0300 (IDT)
From: Alexander Klimov <alserkli@inbox.ru>
To: Anton Stiglic <astiglic@okiok.com>
Cc: cryptography@metzdowd.com
In-Reply-To: <29491.207.236.193.195.1159216111.squirrel@mail.okiok.com>

>> Forgery and Partial Key-Recovery Attacks on HMAC and NMAC Using
>> Hash Collisions, by Scott Contini and Yiqun Lisa Yin (*)

On Mon, 25 Sep 2006, Anton Stiglic wrote:
> Very interesting, I wonder how this integrates with the following paper
> http://citeseer.ist.psu.edu/bellare06new.html (**)

According to Section 1.4 of (*), the new result on HMAC does not
contradict the analysis in (**). That is the assumption used by Mihir
Bellare do not hold for MD4, MD5, and SHA-1.

-- 
Regards,
ASK

---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com

home help back first fref pref prev next nref lref last post