[Cryptography] Potential Vulnerabilities in SM3 Hash (and Related Algorithms)?

R0b0t1 r030t1 at gmail.com
Sun Oct 29 20:53:34 EDT 2017


A patch to gcrypt was proposed on the mailing list to add SM3, a hash
function sponsored by a Chinese government body. The function contains
unjustified changes and picked constants.

Is it possible the hash function is insecure? I am of the opinion that
it is, but despite my concerns the patch was merged with gcrypt.

Respectfully,
     R0b0t1


More information about the cryptography mailing list