MD2 is not secure without the checksum byte (Q1369723)

From MaRDI portal
scientific article
Language Label Description Also known as
English
MD2 is not secure without the checksum byte
scientific article

    Statements

    MD2 is not secure without the checksum byte (English)
    0 references
    0 references
    0 references
    27 January 1998
    0 references
    Security properties of the MD2 Message Digest Algorithm are investigated. First the MD2 hash function is described and general properties of one of its basic blocks -- so called ``compression'' function are investigated. Then it is shown how to find collisions for the compression function in the cases where one input of the function is either equal to zero or ends with consecutive zeros. As the MD2 compression function is shown not to be collision-free, it is concluded that the security of MD2 is in fact based on the redundancy introduced by the checksum block added to the input message.
    0 references
    0 references
    message digest
    0 references
    hashing function
    0 references
    collision
    0 references
    0 references
    0 references