Grøstl Distinguishing Attack: A New Rebound Attack of an AES-like Permutation

We consider highly structured truncated differential paths to mount a new rebound attack on Grøstl-512, a hash functions based on two AES-like permutations, P1024 and Q1024, with non-square input and output registers. We explain how such differential paths can be computed using a Mixed-Integer Linea...

Full description

Bibliographic Details
Main Authors: Victor Cauchois, Clément Gomez, Reynald Lercier
Format: Article
Language:English
Published: Ruhr-Universität Bochum 2017-09-01
Series:IACR Transactions on Symmetric Cryptology
Subjects:
Online Access:https://tosc.iacr.org/index.php/ToSC/article/view/763