A Lightweight 256-Bit Hash Function for Hardware and Low-End Devices: Lesamnta-LW
A Lightweight 256-Bit Hash Function for Hardware and Low-End Devices: Lesamnta-LW
复制标题
DOI:
10.1007/978-3-642-24209-0_10
复制
发表时间:
2010-12
期刊:
影响因子:
--
通讯作者:
Shoichi Hirose;K. Ideguchi;H. Kuwakado;Toru Owada;B. Preneel;Hirotaka Yoshida
中科院分区:
文献类型:
--
作者:
Shoichi Hirose;K. Ideguchi;H. Kuwakado;Toru Owada;B. Preneel;Hirotaka Yoshida
This paper proposes a new lightweight 256-bit hash function Lesamnta-LW with claimed security levels of at least 2120with respect to collision, preimage, and second preimage attacks. We adopt the Merkle-Damgård domain extension; the compression function is constructed from a dedicated AES-based block cipher using the LW1 mode, for which a security reduction can be proven. In terms of lightweight implementations, Lesamnta-LW offers a competitive advantage over other 256-bit hash functions. Our size-optimized hardware implementation of Lesamnta-LW requires only 8.24 Kgates on 90 nm technology. Our software implementation of Lesamnta-LW requires only 50 bytes of RAM and runs fast on short messages on 8-bit CPUs.