Practical Attack against Knapsack based Hash Functions

Antoine Joux and Louis Granboulan
In A. de Santis, editor, Advances in Cryptology - EUROCRYPT'94, Perugia, Italy, May 1994. Volume 950 of LNCS, pages 58-66, Springer-Verlag.

Abstract: We show that lattice reduction is a very powerful tool to find collision in knapsack based compression-functions and hash-functions. In particular, it can be used to break the knapsack based hash-function that was introduced by Damgård.

Download the paper. [pdf] [ps.gz]