TY - JOUR AU - Heim Boissier, Rachelle AU - Noûs, Camille AU - Rotella, Yann PY - 2021/03/19 Y2 - 2024/03/28 TI - Algebraic Collision Attacks on Keccak JF - IACR Transactions on Symmetric Cryptology JA - ToSC VL - 2021 IS - 1 SE - Articles DO - 10.46586/tosc.v2021.i1.239-268 UR - https://tosc.iacr.org/index.php/ToSC/article/view/8839 SP - 239-268 AB - <p>In this paper, we analyze the collision resistance of the two smallest versions of Keccak which have a width of 200 and 400 bits respectively. We show that algebraic and linearization techniques can serve collision cryptanalysis by using some interesting properties of the linear part of the round function of Keccak. We present an attack on the Keccak versions that could be used in lightweight cryptography reduced to two rounds. For Keccak[40, 160] (resp. Keccak[72, 128] and Keccak[144, 256]) our attack has a computational complexity of 2<sup>73</sup> (resp. 2<sup>52.5</sup> and 2<sup>101.5</sup>) Keccak calls.</p> ER -