A SAT-based preimage analysis of reduced KECCAK hash functions.
Paweł Morawiecki, Marian Srebrny · IACR Cryptology ePrint Archive · 2010
Abstract In this paper, we present a preimage attack on reduced versions of Keccak hash functions. We use our recently developed toolkit CryptLogVer for generating the conjunctive normal form, CNF, which is passed to the SAT solver PrecoSAT. We found preimages for some reduced versions of the function and showed that full Keccak function has a comfortable security margin against this kind of attack.