Some observations on the theory of cryptographic hash functions (2001) [16 citations — 1 self]
Abstract:
In this paper, we study several issues related to the notion of \secure " hash functions. Several necessary conditions are considered, as well as a popular sucient condition (the socalled random oracle model). We study the security of various problems that are motivated by the notion of a secure hash function. These problems are analyzed in the random oracle model, and we prove that the obvious trivial algorithms are optimal. As well, we look closely at reductions between various problems. In particular, we consider the important question \does preimage resistance imply collision resistance?". Finally, we study the relationship of the security of hash functions built using the Merkle-Damgard construction to the security of the underlying compression function. 1
Citations
| 1578 | Handbook of Applied Cryptography – Menezes, Oorschot, et al. - 1997 |
| 933 | Random Oracles are Practical: A Paradigm for Designing Efficient Protocols – Bellare, Rogaway - 1993 |
| 434 | Cryptography, Theory and Practice – Stinson - 1995 |
| 252 | The exact security of digital signatures: How to sign with RSA – Bellare, Rogaway - 1996 |
| 168 | The random oracle methodology, revisited – Canetti, Goldreich, et al. - 1998 |
| 101 | One way hash functions and DES – Merkle - 1989 |
| 30 | The state of cryptographic hash functions – Preneel - 1999 |
| 8 | A design principle for hash functions – ARD - 1989 |
| 2 | Concrete lower bounds on the security of ECDSA in the generic group model – Brown |

