Security

Distinguishing Attack and Second-Preimage Attack on the CBC-Like MACs

Download Now Free registration required

Executive Summary

In this paper, the authors first present a new distinguisher on the CBC-MAC based on a block cipher in Cipher Block Chaining (CBC) mode. It can also be used to distinguish other CBC-like MACs from random functions. The main results of this paper are on the second-preimage attack on CBC-MAC and CBC-like MACs include TMAC, OMAC, CMAC, PC-MAC and MACs based on three-key encipher CBC mode. Instead of exhaustive search, this attack can be performed with the birthday attack complexity.

  • Format: PDF
  • Size: 194.4 KB