Paper 2003/220

A short comment on the affine parts of SFLASH^{v3}

Willi Geiselmann and Rainer Steinwandt

Abstract

In [http://eprint.iacr.org/2003/211/] SFLASH^{v3} is presented, which supersedes SFLASH^{v2}, one of the digital signature schemes in the NESSIE Portfolio of recommended cryptographic primitives. We show that a known attack against the affine parts of SFLASH^{v1} and SFLASH^{v2} carries over immediately to the new version SFLASH^{v3}: The 861 bit representing the affine parts of the secret key can easily be derived from the public key alone.

Metadata
Available format(s)
PDF PS
Category
Public-key cryptography
Publication info
Published elsewhere. Unknown where it was published
Keywords
digital signaturescryptanalysis
Contact author(s)
steinwan @ ira uka de
History
2003-10-10: received
Short URL
https://ia.cr/2003/220
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2003/220,
      author = {Willi Geiselmann and Rainer Steinwandt},
      title = {A short comment on the affine parts of SFLASH^{v3}},
      howpublished = {Cryptology ePrint Archive, Paper 2003/220},
      year = {2003},
      note = {\url{https://eprint.iacr.org/2003/220}},
      url = {https://eprint.iacr.org/2003/220}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.