27 March 2013 Brussels, Belgium

María Naya-Plasencia
INRIA

First practical results on reduced-round Keccak and unaligned rebound attack

Keccak was selected as the winner of the SHA-3 competition on October 2012. Since its proposal in 2008, several analysis on reduced versions have been published. In this talk we will present the first practical cryptanalysis results on reduced rounds of the hash function scenario, that were published at Indocrypt 2011 by Naya-Plasencia, Röck and Meier. In particular, they provided 4-round distinguishers, 3-round near-collisions, and 2-round collisions and preimages. Additionally, we will also discuss the results from Duc et al. presented at FSE 2012, that provide unaligned rebound distinguishers on the internal permutation of Keccak up to 8 rounds.


[Slides]