Tag Second-preimage Attack against π-cipher

Abstract : The π-cipher is one of the candidates of the CAESAR competition. One of the advertised features of the π-cipher is tag second-preimage resistance: it should be hard to generate a message with a given tag, even for the legitimate key holder (insider attack). In this note, we show that the generalized birthday attack of Wagner gives a practical tag second-preimage attack against the π-cipher.
Document type :
Preprints, Working Papers, ...
Complete list of metadatas

Cited literature [2 references]  Display  Hide  Download

https://hal.inria.fr/hal-00966794
Contributor : Gaëtan Leurent <>
Submitted on : Thursday, March 27, 2014 - 2:14:56 PM
Last modification on : Friday, May 25, 2018 - 12:02:05 PM
Long-term archiving on : Friday, June 27, 2014 - 11:36:08 AM

File

pi-cipher.pdf
Files produced by the author(s)

Identifiers

  • HAL Id : hal-00966794, version 2

Collections

Citation

Gaëtan Leurent. Tag Second-preimage Attack against π-cipher. 2014. ⟨hal-00966794v2⟩

Share

Metrics

Record views

630

Files downloads

533