D. Coppersmith, M.M. Klawe, et al.
SIAM Journal on Computing
Two attacks on message authentication code (MAC) algorithm 4 from ISO/IEC FDIS 9797-1 is described, which apply when it is used with padding method 1 or 2, and where no MAC truncation is employed. In this case the attacks are significantly more efficient than the best previously known attack.
D. Coppersmith, M.M. Klawe, et al.
SIAM Journal on Computing
D. Coppersmith, G.Y. Nagy, et al.
Studia Scientiarum Mathematicarum Hungarica
N. Alon, E.E. Bergmann, et al.
IEEE Trans. Inf. Theory
D. Coppersmith, C. Neff
SODA 1994