Systems Engineering and Electronics ›› 2025, Vol. 47 ›› Issue (9): 3099-3108.doi: 10.12305/j.issn.1001-506X.2025.09.32

• Communications and Networks • Previous Articles    

New quantum herding attack on hash with MD construction

Xuelian LI1,*, Chenglong LI1(), Tao PEI2,3, Juntao GAO4   

  1. 1. School of Mathematics and Statistics,Xidian University,Xi’an 710071,China
    2. Wuhan Maritime Communication Research Institute,Wuhan 430205,China
    3. School of Cyber Science and Engineering,Wuhan University,Wuhan 430072,China
    4. School of Telecommunications Engineering,Xidian University,Xi’an 710071,China
  • Received:2024-05-17 Online:2025-09-25 Published:2025-09-16
  • Contact: Xuelian LI E-mail:18047288473@163.com

Abstract:

Aiming at the security issues of MD (Merkle-Damgard) with hash structure in the quantum environment, the idea of combining BHT (Brassard-H?yer-Tapp) quantum algorithm and CNS (Chailloux-Naya Plasencia-Schrottenloher) quantum algorithm with the classical new herding attack respectively is proposed, and two attack modes are constructed. Firstly, the BHT quantum algorithm is used to construct a “variable length diamond tree” to increase the number of connected nodes and improve the attack efficiency. Under certain conditions, when the length of recovery message is the same, the attack complexity is lower. Then, taking secure hash algorithm (SHA)-256 as an example, the specific attack complexity is given. Then, an attack mode combining CNS quantum algorithm with new herding attack is proposed, which no longer needs quantum random access memory (qRAM) in the attack process, reducing the attack implementation cost. The attack mode can select the message length for recovery within a certain range, which is better than the non-selectable case in the existing schemes.

Key words: hash function, herding attack, BHT (Brassard-H?yer-Tapp) algorithm, CNS (Hailloux-Naya Plasencia–Schrottenloher) algorithm

CLC Number: 

[an error occurred while processing this directive]