Second-Order Differential Collisions for Reduced SHA-256


In this work, we introduce a new non-random property for hash/compression functions using the theory of higher order differentials. Based on this, we show a second-order differential collision for the compression function of SHA-256 reduced to 47 out of 64 steps with practical complexity. We have implemented the attack and provide an example. Our results… (More)
DOI: 10.1007/978-3-642-25385-0_15


4 Figures and Tables

Cite this paper

@inproceedings{Biryukov2011SecondOrderDC, title={Second-Order Differential Collisions for Reduced SHA-256}, author={Alex Biryukov and Mario Lamberger and Florian Mendel and Ivica Nikolic}, booktitle={ASIACRYPT}, year={2011} }