Preimage Attack on 104-step Hash Function HAVAL

WANG Gao-li,PAN Qiao,YANG Mao-jiang
2009-01-01
Abstract:According to the properties of the function in the first pass and the order of the message words in HAVAL algorithm,a preimage attack on the compression function of the first 104-step HAVAL is proposed by using the exhaustive search method.The complexity of the attack is 2224 hash function valuations with the storage of 238 Bytes.However,the complexity of brute-force to find preimage is 2256.Analysis result has some new light on the evaluation of the security of HAVAL.
What problem does this paper attempt to address?