English

Colliding Message Pairs for 23 and 24-step SHA-512

Cryptography and Security 2008-09-02 v1

Abstract

Recently, Indesteege et al. [1] had described attacks against 23 and 24-step SHA-512 at SAC '08. Their attacks are based on the differential path by Nikolic and Biryukov [2]. The reported complexities are 244.92^{44.9} and 2532^{53} calls to the respective step reduced SHA-512 hash function. They provided colliding message pairs for 23-step SHA-512 but did not provide a colliding message pair for 24-step SHA-512. In this note we provide a colliding message pair for 23-step SHA-512 and the first colliding message pair for 24-step SHA-512. Our attacks use the differential path first described by Sanadhya and Sarkar at ACISP '08 [3]. The complexities of our attacks are 216.52^{16.5} and 234.52^{34.5} calls to the respective step reduced SHA-512 hash function. Complete details of the attacks will be provided in an extended version of this note.

Cite

@article{arxiv.0809.0216,
  title  = {Colliding Message Pairs for 23 and 24-step SHA-512},
  author = {Somitra Kumar Sanadhya and Palash Sarkar},
  journal= {arXiv preprint arXiv:0809.0216},
  year   = {2008}
}

Comments

2 pages, 2 Tables

R2 v1 2026-06-21T11:15:37.947Z