IACR Transactions on Symmetric Cryptology (Mar 2023)

Indifferentiability of the Sponge Construction with a Restricted Number of Message Blocks

  • Charlotte Lefevre

DOI
https://doi.org/10.46586/tosc.v2023.i1.224-243
Journal volume & issue
Vol. 2023, no. 1

Abstract

Read online

The sponge construction is a popular method for hashing. Quickly after its introduction, the sponge was proven to be tightly indifferentiable from a random oracle up to ≈ 2c/2 queries, where c is the capacity. However, this bound is not tight when the number of message blocks absorbed is restricted to ℓ c is the permutation size. Depending on the parameters chosen, this result allows to have enhanced security or to absorb at a larger rate for applications that require a fixed-length input hash function.

Keywords