Cryptanalysis on SHA 1

Xiaoyun Wang,Andrew C Yao,Frances Yao
2005-01-01
Abstract:Page 1. Cryptanalysis on SHA-1 Xiaoyun Wang, Andrew C Yao, and Frances Yao Xiaoyun Wang Tsinghua University & Shandong Unversity Andrew C Yao Tsinghua University Frances Yao City University of Hong Kong Page 2. Outline ∎ Obstacles for further improvement on SHA-1 attack ∎ New collision path for SHA-1 (First iteration path) ∎ Comparing new collision path with previous path ∎ Strategies for message modification ∎ Details of message modification ∎ The complexity of searching for collisions Page 3. Obstacles for Further Improvement on SHA-1 Attack ∎ Unlike SHA-0 and MD5, many message conditions and chaining variable conditions must co-exist in each step of differential path Page 4. Obstacles for Further Improvement on SHA-1 Attack (continued) ∎ Difficult, because message space available is tight: -- 50 message conditions in steps 17-80 -- hence 50 message conditions in steps 12-16 …
What problem does this paper attempt to address?