Decisional Second-Preimage Resistance: When Does SPR Imply PRE?

IACR Cryptology ePrint Archive(2019)

引用 17|浏览268
暂无评分
摘要
There is a well-known gap between second-preimage resistance and preimage resistance for length-preserving hash functions. This paper introduces a simple concept that fills this gap. One consequence of this concept is that tight reductions can remove interactivity for multi-target length-preserving preimage problems, such as the problems that appear in analyzing hash-based signature systems. Previous reduction techniques applied to only a negligible fraction of all length-preserving hash functions, presumably excluding all off-the-shelf hash functions.
更多
查看译文
关键词
Cryptographic hash functions,Preimage resistance,Second-preimage resistance,Provable security,Tight reductions,Multi-target attacks,Hash-based signatures
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要