RUS  ENG
Full version
JOURNALS // Matematicheskie Voprosy Kriptografii [Mathematical Aspects of Cryptography] // Archive

Mat. Vopr. Kriptogr., 2022 Volume 13, Issue 2, Pages 99–116 (Mi mvk410)

This article is cited in 4 papers

Streebog compression function as PRF in secret-key settings

V. A. Kiryukhinab

a JSC «InfoTeCS», Moscow
b LLC «SFB Lab», Moscow

Abstract: Security of the many keyed hash-based cryptographic constructions (such as HMAC) depends on the fact that the underlying compression function $\mathsf{g}(H,M)$ is a pseudorandom function (PRF). This paper presents key-recovery algorithms for 7 rounds (of 12) of Streebog compression function. Two cases were considered, as a secret key can be used: the previous state $H$ or the message block $M$. The proposed methods implicitly show that Streebog compression function has a large security margin as PRF in the above-mentioned secret-key settings.

Key words: Streebog, PRF, truncated differentials, rebound, polytopic cryptanalysis.

UDC: 519.719.2

Received 10.XI.2021

Language: English

DOI: 10.4213/mvk410



Bibliographic databases:


© Steklov Math. Inst. of RAS, 2025