@article{Errata to Sound Hashing Modes of Arbitrary Functions, Permutations, and Block Ciphers_2020, volume={2020}, url={https://tosc.iacr.org/index.php/ToSC/article/view/8706}, DOI={10.13154/tosc.v2020.i3.362-366}, abstractNote={In ToSC 2018(4), Daemen et al. performed an in-depth investigation of sound hashing modes based on arbitrary functions, permutations, or block ciphers. However, for the case of invertible primitives, there is a glitch. In this errata, we formally fix this glitch by adding an extra term to the security bound, q/2b−n, where q is query complexity, b the width of the permutation or the block size of the block cipher, and n the size of the hash digest. For permutations that are wider than two times the chaining value this term is negligible. For block cipher based hashing modes where the block size is close to the digest size, the term degrades the security significantly.}, number={3}, journal={IACR Transactions on Symmetric Cryptology}, year={2020}, month={Sep.}, pages={362–366} }