Exploiting output bits and the \(\chi \) operation in MitM preimage attacks on Keccak
摘要
Keccak, the cryptographic hash function at the core of the SHA-3 standard, offers enhanced security and efficiency for data integrity and authentication. Qin et al. (EUROCRYPT 2023) first introduced a Meet-in-the-Middle (MitM) preimage attack on Keccak using a Mixed-Integer Linear Programming (MILP) model. In this paper, we further analyze Keccak’s security against this MitM preimage attack. In Qin’s work, the model relied only on the digest portion of Keccak’s output to find match points, though the digest represents only part of the full output. Our improved MILP model expands on this by incorporating both the digest and additional selected bits from the remaining output of Keccak. Additionally, we exploit the properties of the