Analysis of the Hash Function Design Strategy called SMASH

Mario Lamberger, Norbert Pramstaller, Christian Rechberger, Vincent Rijmen

Research output: Contribution to journalArticlepeer-review


The hash function design strategy SMASH was recently proposed as an alternative to the MD4 family of hash functions. It can be shown that the strategy leads to designs that are vulnerable to efficient collision and (second) preimage attacks. The mathematical structure of the SMASH description facilitates the description of the weakness and the resulting attacks, but also functions with less mathematical elegance may show similar weaknesses.
Original languageEnglish
Pages (from-to)3647-3655
JournalIEEE Transactions on Information Theory
Issue number8
Publication statusPublished - 2008

Cite this