{"id":"https://openalex.org/W7136206922","doi":"https://doi.org/10.46586/tosc.v2026.i1.76-94","title":"Breaking and Fixing MacaKey","display_name":"Breaking and Fixing MacaKey","publication_year":2026,"publication_date":"2026-03-16","ids":{"openalex":"https://openalex.org/W7136206922","doi":"https://doi.org/10.46586/tosc.v2026.i1.76-94"},"language":"en","primary_location":{"id":"doi:10.46586/tosc.v2026.i1.76-94","is_oa":true,"landing_page_url":"https://doi.org/10.46586/tosc.v2026.i1.76-94","pdf_url":"https://tosc.iacr.org/index.php/ToSC/article/download/12779/12468","source":{"id":"https://openalex.org/S4210236173","display_name":"IACR Transactions on Symmetric Cryptology","issn_l":"2519-173X","issn":["2519-173X"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IACR Transactions on Symmetric Cryptology","raw_type":"journal-article"},"type":"article","indexed_in":["crossref","doaj"],"open_access":{"is_oa":true,"oa_status":"diamond","oa_url":"https://tosc.iacr.org/index.php/ToSC/article/download/12779/12468","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5018823954","display_name":"Ritam Bhaumik","orcid":"https://orcid.org/0000-0002-2883-4870"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Ritam Bhaumik","raw_affiliation_strings":[],"raw_orcid":"https://orcid.org/0000-0002-2883-4870","affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5102022775","display_name":"Bishwajit Chakraborty","orcid":"https://orcid.org/0000-0001-8729-6163"},"institutions":[{"id":"https://openalex.org/I172675005","display_name":"Nanyang Technological University","ror":"https://ror.org/02e7b5302","country_code":"SG","type":"education","lineage":["https://openalex.org/I172675005"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Bishwajit Chakraborty","raw_affiliation_strings":["Nanyang Technological University, Singapore, Singapore"],"raw_orcid":"https://orcid.org/0000-0001-8729-6163","affiliations":[{"raw_affiliation_string":"Nanyang Technological University, Singapore, Singapore","institution_ids":["https://openalex.org/I172675005"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5093516004","display_name":"Chandranan Dhar","orcid":"https://orcid.org/0009-0008-9948-3714"},"institutions":[{"id":"https://openalex.org/I4210087059","display_name":"Technology Innovation Institute","ror":"https://ror.org/001kv2y39","country_code":"AE","type":"facility","lineage":["https://openalex.org/I4210087059"]}],"countries":["AE"],"is_corresponding":false,"raw_author_name":"Chandranan Dhar","raw_affiliation_strings":["Cryptography Research Center, Technology Innovation Institute, Abu Dhabi, UAE"],"raw_orcid":"https://orcid.org/0009-0008-9948-3714","affiliations":[{"raw_affiliation_string":"Cryptography Research Center, Technology Innovation Institute, Abu Dhabi, UAE","institution_ids":["https://openalex.org/I4210087059"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":3,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":true,"cited_by_count":0,"citation_normalized_percentile":{"value":0.3506423,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":"2026","issue":"1","first_page":"76","last_page":"94"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10951","display_name":"Cryptographic Implementations and Security","score":0.8363999724388123,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10951","display_name":"Cryptographic Implementations and Security","score":0.8363999724388123,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10237","display_name":"Cryptography and Data Security","score":0.13099999725818634,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11130","display_name":"Coding theory and cryptography","score":0.007600000128149986,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/secrecy","display_name":"Secrecy","score":0.7218999862670898},{"id":"https://openalex.org/keywords/adversary","display_name":"Adversary","score":0.6786999702453613},{"id":"https://openalex.org/keywords/hash-function","display_name":"Hash function","score":0.5491999983787537},{"id":"https://openalex.org/keywords/simple","display_name":"Simple (philosophy)","score":0.538100004196167},{"id":"https://openalex.org/keywords/state","display_name":"State (computer science)","score":0.47999998927116394},{"id":"https://openalex.org/keywords/permutation","display_name":"Permutation (music)","score":0.439300000667572}],"concepts":[{"id":"https://openalex.org/C2776452267","wikidata":"https://www.wikidata.org/wiki/Q1503443","display_name":"Secrecy","level":2,"score":0.7218999862670898},{"id":"https://openalex.org/C41065033","wikidata":"https://www.wikidata.org/wiki/Q2825412","display_name":"Adversary","level":2,"score":0.6786999702453613},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.6201000213623047},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.5745000243186951},{"id":"https://openalex.org/C99138194","wikidata":"https://www.wikidata.org/wiki/Q183427","display_name":"Hash function","level":2,"score":0.5491999983787537},{"id":"https://openalex.org/C2780586882","wikidata":"https://www.wikidata.org/wiki/Q7520643","display_name":"Simple (philosophy)","level":2,"score":0.538100004196167},{"id":"https://openalex.org/C48103436","wikidata":"https://www.wikidata.org/wiki/Q599031","display_name":"State (computer science)","level":2,"score":0.47999998927116394},{"id":"https://openalex.org/C21308566","wikidata":"https://www.wikidata.org/wiki/Q7169365","display_name":"Permutation (music)","level":2,"score":0.439300000667572},{"id":"https://openalex.org/C77553402","wikidata":"https://www.wikidata.org/wiki/Q13222579","display_name":"Upper and lower bounds","level":2,"score":0.3984000086784363},{"id":"https://openalex.org/C148417208","wikidata":"https://www.wikidata.org/wiki/Q4825882","display_name":"Authentication (law)","level":2,"score":0.35249999165534973},{"id":"https://openalex.org/C47191418","wikidata":"https://www.wikidata.org/wiki/Q3510462","display_name":"Information-theoretic security","level":3,"score":0.3456000089645386},{"id":"https://openalex.org/C178489894","wikidata":"https://www.wikidata.org/wiki/Q8789","display_name":"Cryptography","level":2,"score":0.34290000796318054},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.33649998903274536},{"id":"https://openalex.org/C141492731","wikidata":"https://www.wikidata.org/wiki/Q1052621","display_name":"Message authentication code","level":3,"score":0.29030001163482666},{"id":"https://openalex.org/C165696696","wikidata":"https://www.wikidata.org/wiki/Q11287","display_name":"Exploit","level":2,"score":0.28780001401901245}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.46586/tosc.v2026.i1.76-94","is_oa":true,"landing_page_url":"https://doi.org/10.46586/tosc.v2026.i1.76-94","pdf_url":"https://tosc.iacr.org/index.php/ToSC/article/download/12779/12468","source":{"id":"https://openalex.org/S4210236173","display_name":"IACR Transactions on Symmetric Cryptology","issn_l":"2519-173X","issn":["2519-173X"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IACR Transactions on Symmetric Cryptology","raw_type":"journal-article"},{"id":"pmh:oai:doaj.org/article:f02ee61acd814a25b1500dd7c93c115a","is_oa":true,"landing_page_url":"https://doaj.org/article/f02ee61acd814a25b1500dd7c93c115a","pdf_url":null,"source":{"id":"https://openalex.org/S4306401280","display_name":"DOAJ (DOAJ: Directory of Open Access Journals)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by-sa","license_id":"https://openalex.org/licenses/cc-by-sa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"IACR Transactions on Symmetric Cryptology, Vol 2026, Iss 1 (2026)","raw_type":"article"}],"best_oa_location":{"id":"doi:10.46586/tosc.v2026.i1.76-94","is_oa":true,"landing_page_url":"https://doi.org/10.46586/tosc.v2026.i1.76-94","pdf_url":"https://tosc.iacr.org/index.php/ToSC/article/download/12779/12468","source":{"id":"https://openalex.org/S4210236173","display_name":"IACR Transactions on Symmetric Cryptology","issn_l":"2519-173X","issn":["2519-173X"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IACR Transactions on Symmetric Cryptology","raw_type":"journal-article"},"sustainable_development_goals":[],"awards":[],"funders":[{"id":"https://openalex.org/F4320320883","display_name":"Agence Nationale de la Recherche","ror":"https://ror.org/00rbzpz17"}],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W7136206922.pdf","grobid_xml":"https://content.openalex.org/works/W7136206922.grobid-xml"},"referenced_works_count":0,"referenced_works":[],"related_works":[],"abstract_inverted_index":{"The":[0,54,139],"sponge":[1],"construction":[2],"underpins":[3],"many":[4],"modern":[5],"symmetric":[6],"primitives,":[7],"enabling":[8],"efficient":[9],"hashing":[10],"and":[11,35,86,115],"authenticated":[12],"encryption.":[13],"While":[14],"full-state":[15,28,52],"absorption":[16,148],"is":[17,59,73,90],"known":[18],"to":[19,50,63,75],"be":[20],"secure":[21,61],"in":[22,67,121,172],"keyed":[23,152],"sponges,":[24],"the":[25,43,51,64,71,108,111,116,122,144,167,173],"security":[26,135,169],"of":[27,47,110,119,170],"squeezing":[29],"has":[30],"remained":[31],"unclear.":[32],"Recently,":[33],"Lefevre":[34],"Marhuenda-Beltr\u00e1n":[36],"introduced":[37],"MacaKey,":[38],"which":[39],"applies":[40],"ideas":[41],"from":[42],"summation-truncation":[44],"hybrid":[45],"technique":[46],"constructing":[48],"PRFs":[49],"sponge.":[53],"authors":[55],"claimed":[56,105,180],"that":[57,88,102,133,164],"MacaKey":[58,89],"provably":[60],"up":[62],"birthday":[65],"bound":[66],"capacity,":[68],"even":[69],"when":[70],"adversary":[72],"allowed":[74],"request":[76],"variable-length":[77],"outputs.":[78],"In":[79],"this":[80,84],"work,":[81],"we":[82,162],"revisit":[83],"claim":[85],"show":[87,163],"insecure":[91],"as":[92],"a":[93,97,130,151],"PRF.":[94],"We":[95,127],"demonstrate":[96],"simple":[98,131],"four-query":[99],"distinguishing":[100],"attack":[101],"violates":[103],"its":[104],"bound,":[106],"exploiting":[107],"exposure":[109],"full":[112,174],"internal":[113,145],"state":[114,146,175],"resulting":[117],"loss":[118],"secrecy":[120],"capacity":[123],"portion":[124],"during":[125],"squeezing.":[126],"then":[128],"propose":[129],"modification":[132],"restores":[134],"with":[136],"negligible":[137],"overhead.":[138],"modified":[140],"construction,":[141],"KeyMacaKey,":[142],"re-randomizes":[143],"after":[147],"by":[149],"incorporating":[150],"finalization":[153],"step":[154],"without":[155],"requiring":[156],"an":[157],"extra":[158],"permutation":[159],"call.":[160],"Further,":[161],"KeyMacaKey":[165],"achieves":[166],"stronger":[168],"birthday-bound":[171],"size":[176],"than":[177],"what":[178],"was":[179],"for":[181],"MacaKey.":[182]},"counts_by_year":[],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2026-03-17T00:00:00"}
