"Problems of search for collisions of cryptographic hash functions of the MD family as variants of Boolean satisfiability problem"
Bogachkova I.A., Zaikin O.S., Kochemazov S.E., Otpushchennikov I.V., Semenov A.A., and Khamisov O.O.

An implementation of the differential attacks on cryptographic hash functions MD4 (Message Digest 4) and MD5 (Message Digest 5) by reducing the problems of search for collisions of these hash functions to the Boolean satisfiability problem (SAT) is considered. The novelty of the results obtained consists in a more compact (compared to already known) SAT encodings for the algorithms considered and in the use of modern parallel and distributed SAT solvers in applications to the formulated SAT problems. Searching for single block collisions of MD4 in this approach turned out to be very simple. In addition, several dozens of double block collisions of MD5 are found. In the process of the corresponding numerical experiments, a certain class of messages that produce the collisions is found: in particular, a set of pairs of such messages with first 10 zero bytes is constructed.

Keywords: cryptographic hash functions, collisions, differential attacks, Boolean satisfiability problem, SAT, CDCL (Conflict-Driven Clause Learning), parallel SAT solvers.

  • Bogachkova I.A. – Irkutsk State University, Institute of Mathematics, Economics and Informatics; bul’var Gagarina 20, Irkutsk, 664003, Russia; Student, e-mail: the42dimension@gmail.com
  • Zaikin O.S. – Matrosov Institute for System Dynamics and Control Theory, Siberian Branch of Russian Academy of Sciences; ulitsa Lermontova 134, Irkutsk, 664033, Russia; Ph.D., Scientist, e-mail: zaikin.icc@gmail.com
  • Kochemazov S.E. – Matrosov Institute for System Dynamics and Control Theory, Siberian Branch of Russian Academy of Sciences; ulitsa Lermontova 134, Irkutsk, 664033, Russia; Programmer, e-mail: veinamond@gmail.com
  • Otpushchennikov I.V. – Matrosov Institute for System Dynamics and Control Theory, Siberian Branch of Russian Academy of Sciences; ulitsa Lermontova 134, Irkutsk, 664033, Russia; Ph.D., Scientist, e-mail: otilya@yandex.ru
  • Semenov A.A. – Matrosov Institute for System Dynamics and Control Theory, Siberian Branch of Russian Academy of Sciences; ulitsa Lermontova 134, Irkutsk, 664033, Russia; Ph.D., Associate Professor, Head of Laboratory, e-mail: biclop.rambler@yandex.ru
  • Khamisov O.O. – Irkutsk State University, Institute of Mathematics, Economics and Informatics; bul’var Gagarina 20, Irkutsk, 664003, Russia; Student, e-mail: cygx151@gmail.com