Matches in SemOpenAlex for { <https://semopenalex.org/work/W3122332356> ?p ?o ?g. }
Showing items 1 to 90 of
90
with 100 items per page.
- W3122332356 abstract "The Galois/Counter Mode (GCM) of operation has been standardized by NIST to provide singlepass authenticated encryption. The GHASH authentication component of GCM belongs to a class of WegmanCarter polynomial hashes that operate in the field GF(2). We present message forgery attacks that are made possible by its extremely smooth-order multiplicative group which splits into 512 subgroups. GCM uses the same block cipher key K to both encrypt data and to derive the generator H of the authentication polynomial for GHASH. In present literature, only the trivial weak key H = 0 has been considered. We show that GHASH has much wider classes of weak keys in its 512 multiplicative subgroups, analyze some of their properties, and give experimental results on AES-GCM weak key search. Our attacks can be used not only to bypass message authentication with garbage but also to target specific plaintext bits if a polynomial MAC is used in conjunction with a stream cipher. These attacks can also be applied with varying efficiency to other polynomial hashes and MACs, depending on their field properties. Our findings show that especially the use of short polynomialevaluation MACs should be avoided if the underlying field has a smooth multiplicative order." @default.
- W3122332356 created "2021-02-01" @default.
- W3122332356 creator A5010228289 @default.
- W3122332356 date "2012-01-01" @default.
- W3122332356 modified "2023-09-23" @default.
- W3122332356 title "Cycling Attacks on GCM, GHASH and Other Polynomial MACs and Hashes" @default.
- W3122332356 cites W13103650 @default.
- W3122332356 cites W1555623005 @default.
- W3122332356 cites W1607921603 @default.
- W3122332356 cites W1656385624 @default.
- W3122332356 cites W1763079358 @default.
- W3122332356 cites W190291562 @default.
- W3122332356 cites W1981455414 @default.
- W3122332356 cites W1985623009 @default.
- W3122332356 cites W1993825099 @default.
- W3122332356 cites W2107371087 @default.
- W3122332356 cites W2131300413 @default.
- W3122332356 cites W2134079148 @default.
- W3122332356 cites W2234583632 @default.
- W3122332356 cites W2246993676 @default.
- W3122332356 cites W2727655671 @default.
- W3122332356 cites W6541406 @default.
- W3122332356 cites W2611899471 @default.
- W3122332356 hasPublicationYear "2012" @default.
- W3122332356 type Work @default.
- W3122332356 sameAs 3122332356 @default.
- W3122332356 citedByCount "0" @default.
- W3122332356 crossrefType "posted-content" @default.
- W3122332356 hasAuthorship W3122332356A5010228289 @default.
- W3122332356 hasConcept C106544461 @default.
- W3122332356 hasConcept C128619300 @default.
- W3122332356 hasConcept C132651083 @default.
- W3122332356 hasConcept C134306372 @default.
- W3122332356 hasConcept C141452985 @default.
- W3122332356 hasConcept C143742823 @default.
- W3122332356 hasConcept C148730421 @default.
- W3122332356 hasConcept C18903297 @default.
- W3122332356 hasConcept C33923547 @default.
- W3122332356 hasConcept C38652104 @default.
- W3122332356 hasConcept C41008148 @default.
- W3122332356 hasConcept C60448319 @default.
- W3122332356 hasConcept C80444323 @default.
- W3122332356 hasConcept C86803240 @default.
- W3122332356 hasConcept C90119067 @default.
- W3122332356 hasConcept C92717368 @default.
- W3122332356 hasConcept C93974786 @default.
- W3122332356 hasConcept C99138194 @default.
- W3122332356 hasConceptScore W3122332356C106544461 @default.
- W3122332356 hasConceptScore W3122332356C128619300 @default.
- W3122332356 hasConceptScore W3122332356C132651083 @default.
- W3122332356 hasConceptScore W3122332356C134306372 @default.
- W3122332356 hasConceptScore W3122332356C141452985 @default.
- W3122332356 hasConceptScore W3122332356C143742823 @default.
- W3122332356 hasConceptScore W3122332356C148730421 @default.
- W3122332356 hasConceptScore W3122332356C18903297 @default.
- W3122332356 hasConceptScore W3122332356C33923547 @default.
- W3122332356 hasConceptScore W3122332356C38652104 @default.
- W3122332356 hasConceptScore W3122332356C41008148 @default.
- W3122332356 hasConceptScore W3122332356C60448319 @default.
- W3122332356 hasConceptScore W3122332356C80444323 @default.
- W3122332356 hasConceptScore W3122332356C86803240 @default.
- W3122332356 hasConceptScore W3122332356C90119067 @default.
- W3122332356 hasConceptScore W3122332356C92717368 @default.
- W3122332356 hasConceptScore W3122332356C93974786 @default.
- W3122332356 hasConceptScore W3122332356C99138194 @default.
- W3122332356 hasOpenAccess W3122332356 @default.
- W3122332356 hasRelatedWork W10632691 @default.
- W3122332356 hasRelatedWork W1449501971 @default.
- W3122332356 hasRelatedWork W1509913249 @default.
- W3122332356 hasRelatedWork W1608807797 @default.
- W3122332356 hasRelatedWork W1660192523 @default.
- W3122332356 hasRelatedWork W1703454860 @default.
- W3122332356 hasRelatedWork W1734967783 @default.
- W3122332356 hasRelatedWork W1805467247 @default.
- W3122332356 hasRelatedWork W2016250398 @default.
- W3122332356 hasRelatedWork W203203485 @default.
- W3122332356 hasRelatedWork W2160494425 @default.
- W3122332356 hasRelatedWork W2229133197 @default.
- W3122332356 hasRelatedWork W2402158772 @default.
- W3122332356 hasRelatedWork W2585929809 @default.
- W3122332356 hasRelatedWork W2591523650 @default.
- W3122332356 hasRelatedWork W2592461597 @default.
- W3122332356 hasRelatedWork W2952069644 @default.
- W3122332356 hasRelatedWork W3203363562 @default.
- W3122332356 hasRelatedWork W833016788 @default.
- W3122332356 hasRelatedWork W10072121 @default.
- W3122332356 isParatext "false" @default.
- W3122332356 isRetracted "false" @default.
- W3122332356 magId "3122332356" @default.
- W3122332356 workType "article" @default.