Cryptanalysis of Curl-P and Other Attacks on the IOTA Cryptocurrency.
IACR Cryptol. ePrint Arch.(2019)
摘要
We present attacks on the cryptography formerly used in the IOTA blockchain, including under certain conditions the ability to forge signatures. We developed practical attacks on IOTA's cryptographic hash function Curl-P-27, allowing us to quickly generate short colliding messages. These collisions work even for messages of the same length. Exploiting these weaknesses in Curl-P-27, we broke the EU-CMA security of the former IOTA Signature Scheme (ISS). Finally, we show that in a chosen-message setting we could forge signatures and multi-signatures of valid spending transactions (called bundles in IOTA).
更多查看译文
关键词
cryptocurrencies, signature forgeries, cryptographic hash functions, cryptanalysis
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络