International Association for Cryptologic Research

International Association
for Cryptologic Research

IACR News item: 13 September 2013

Zongyue Wang, Hongbo Yu, Xiaoyun Wang
ePrint Report ePrint Report
GOST R is the hash function standard of Russia. This paper presents some cryptanalytic results on GOST R. Using the rebound attack technique, we achieve collision attacks on the reduced round compression function. Result on up to 9.5 rounds is proposed, the time complexity is 2^{176} and the memory requirement is 2^{128} bytes. Based on the 9.5-round collision result, a limited birthday distinguisher is presented. More

over, a method to construct k collisions on 512-bit version of GOST R is given which show the weakness of the structure used in GOST R. To the best of our knowledge, these are the first results on GOST R.

Expand

Additional news items may be found on the IACR news page.