Rebound Distinguishers: Results on the Full Whirlpool Compression Function

@inproceedings{Lamberger2009ReboundDR,
  title={Rebound Distinguishers: Results on the Full Whirlpool Compression Function},
  author={Mario Lamberger and Florian Mendel and Christian Rechberger and Vincent Rijmen and Martin Schl{\"a}ffer},
  booktitle={ASIACRYPT},
  year={2009}
}
Whirlpool is a hash function based on a block cipher that can be seen as a scaled up variant of the AES. The main difference is the (compared to AES) extremely conservative key schedule. In this work, we present a distinguishing attack on the full compression function of Whirlpool. We obtain this result by improving the rebound attack on reduced Whirlpool… CONTINUE READING