DocumentCode
33959
Title
SPONGENT: The Design Space of Lightweight Cryptographic Hashing
Author
Bogdanov, Alexei ; Knezevic, Marko ; Leander, Gregor ; Toz, D. ; Varici, K. ; Verbauwhede, Ingrid
Author_Institution
ESAT/SCD/COSIC, KU Leuven, Leuven, Belgium
Volume
62
Issue
10
fYear
2013
fDate
Oct. 2013
Firstpage
2041
Lastpage
2053
Abstract
The design of secure yet efficiently implementable cryptographic algorithms is a fundamental problem of cryptography. Lately, lightweight cryptography--optimizing the algorithms to fit the most constrained environments--has received a great deal of attention, the recent research being mainly focused on building block ciphers. As opposed to that, the design of lightweight hash functions is still far from being well investigated with only few proposals in the public domain. In this paper, we aim to address this gap by exploring the design space of lightweight hash functions based on the sponge construction instantiated with present-type permutations. The resulting family of hash functions is called spongent. We propose 13 spongent variants--or different levels of collision and (second) preimage resistance as well as for various implementation constraints. For each of them, we provide several ASIC hardware implementations--ranging from the lowest area to the highest throughput. We make efforts to address the fairness of comparison with other designs in the field by providing an exhaustive hardware evaluation on various technologies, including an open core library. We also prove essential differential properties of spongent permutations, give a security analysis in terms of collision and preimage resistance, as well as study in detail dedicated linear distinguishers.
Keywords
application specific integrated circuits; cryptography; ASIC hardware; SPONGENT; design space; hardware evaluation; lightweight cryptographic hashing; lightweight hash function; open core library; present-type permutation; security analysis; sponge construction; spongent; Hardware; Photonics; Resistance; Standards; Hash function; RFID; lightweight cryptography; low-cost cryptography; low-power design; present; sponge construction; spongent;
fLanguage
English
Journal_Title
Computers, IEEE Transactions on
Publisher
ieee
ISSN
0018-9340
Type
jour
DOI
10.1109/TC.2012.196
Filename
6275435
Link To Document