{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,21]],"date-time":"2026-07-21T23:30:40Z","timestamp":1784676640242,"version":"3.55.0"},"publisher-location":"Berlin, Heidelberg","reference-count":33,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"value":"9783540374329","type":"print"},{"value":"9783540374336","type":"electronic"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2006]]},"DOI":"10.1007\/11818175_36","type":"book-chapter","created":{"date-parts":[[2006,9,23]],"date-time":"2006-09-23T02:21:52Z","timestamp":1158978112000},"page":"602-619","source":"Crossref","is-referenced-by-count":214,"title":["New Proofs for NMAC and HMAC: Security Without Collision-Resistance"],"prefix":"10.1007","author":[{"given":"Mihir","family":"Bellare","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","reference":[{"key":"36_CR1","unstructured":"American National Standards Institution. ANSI X9.71, Keyed hash message authentication code (2000)"},{"key":"36_CR2","doi-asserted-by":"crossref","unstructured":"Bellare, M.: New Proofs for NMAC and HMAC:\u00a0Security without Collision-Resistance. Full version of this paper. Cryptology ePrint Archive:\u00a0Report 2006\/043 (2006)","DOI":"10.1007\/11818175_36"},{"key":"36_CR3","series-title":"Lecture Notes in Computer Science","first-page":"1","volume-title":"Advances in Cryptology - CRYPTO \u201996","author":"M. Bellare","year":"1996","unstructured":"Bellare, M., Canetti, R., Krawczyk, H.: Keying hash functions for message authentication. In: Koblitz, N. (ed.) CRYPTO 1996. LNCS, vol.\u00a01109, pp. 1\u201315. Springer, Heidelberg (1996)"},{"key":"36_CR4","unstructured":"Bellare, M., Canetti, R., Krawczyk, H.: Pseudorandom functions revisited:\u00a0The cascade construction and its concrete security (Preliminary version in Proceedings of the 37th Symposium on Foundations of Computer Science, IEEE, 1996), http:\/\/www-cse.ucsd.edu\/users\/mihir"},{"key":"36_CR5","volume-title":"Proceedings of the 38th Symposium on Foundations of Computer Science","author":"M. Bellare","year":"1997","unstructured":"Bellare, M., Desai, A., Jokipii, E., Rogaway, P.: A concrete security treatment of symmetric encryption. In: Proceedings of the 38th Symposium on Foundations of Computer Science. IEEE, Los Alamitos (1997)"},{"issue":"3","key":"36_CR6","doi-asserted-by":"publisher","first-page":"362","DOI":"10.1006\/jcss.1999.1694","volume":"61","author":"M. Bellare","year":"2000","unstructured":"Bellare, M., Kilian, J., Rogaway, P.: The security of the cipher block chaining message authentication code. Journal of Computer and System Sciences\u00a061(3), 362\u2013399 (2000)","journal-title":"Journal of Computer and System Sciences"},{"key":"36_CR7","series-title":"Lecture Notes in Computer Science","volume-title":"Advances in Cryptology \u2013 EUROCRPYT 2003","author":"M. Bellare","year":"2003","unstructured":"Bellare, M., Kohno, T.: A theoretical treatment of related-key attacks: RKAPRPs, RKA-PRFs, and applications. In: Biham, E. (ed.) EUROCRYPT 2003. LNCS, vol.\u00a02656. Springer, Heidelberg (2003)"},{"issue":"2","key":"36_CR8","doi-asserted-by":"publisher","first-page":"206","DOI":"10.1145\/996943.996945","volume":"7","author":"M. Bellare","year":"2004","unstructured":"Bellare, M., Namprempre, C., Kohno, T.: Authenticated Encryption in SSH:\u00a0Provably Fixing the SSH Binary Packet Protocol. ACM Transactions on Information and System Security (TISSEC)\u00a07(2), 206\u2013241 (2004)","journal-title":"ACM Transactions on Information and System Security (TISSEC)"},{"key":"36_CR9","unstructured":"Bellare, M., Goldreich, O., Mityagin, A.: The power of verification queries in message authentication and authenticated encryption. Cryptology ePrint Archive: Report 2004\/309 (2004)"},{"key":"36_CR10","unstructured":"Bellare, M., Rogaway, P.: The game-playing technique and its application to triple encryption. Cryptology ePrint Archive: Report 2004\/331 (2004)"},{"key":"36_CR11","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"crossref","first-page":"216","DOI":"10.1007\/3-540-48405-1_14","volume-title":"Advances in Cryptology - CRYPTO \u201999","author":"J. Black","year":"1999","unstructured":"Black, J., Halevi, S., Krawczyk, H., Krovetz, T., Rogaway, P.: UMAC: Fast and secure message authentication. In: Wiener, M. (ed.) CRYPTO 1999. LNCS, vol.\u00a01666, p. 216. Springer, Heidelberg (1999)"},{"key":"36_CR12","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"197","DOI":"10.1007\/3-540-44598-6_12","volume-title":"Advances in Cryptology - CRYPTO 2000","author":"J.A. Black","year":"2000","unstructured":"Black, J.A., Rogaway, P.: CBC mACs for arbitrary-length messages:The three-key constructions. In: Bellare, M. (ed.) CRYPTO 2000. LNCS, vol.\u00a01880, p. 197. Springer, Heidelberg (2000)"},{"issue":"2","key":"36_CR13","doi-asserted-by":"publisher","first-page":"143","DOI":"10.1016\/0022-0000(79)90044-8","volume":"18","author":"L. Carter","year":"1979","unstructured":"Carter, L., Wegman, M.: Universal classes of hash functions. Journal of Computer and System Sciences\u00a018(2), 143\u2013154 (1979)","journal-title":"Journal of Computer and System Sciences"},{"key":"36_CR14","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"crossref","first-page":"416","DOI":"10.1007\/0-387-34805-0_39","volume-title":"Advances in Cryptology - CRYPTO \u201989","author":"I.B. Damg\u00e5rd","year":"1990","unstructured":"Damg\u00e5rd, I.B.: A design principle for hash functions. In: Brassard, G. (ed.) CRYPTO 1989. LNCS, vol.\u00a0435, pp. 416\u2013427. Springer, Heidelberg (1990)"},{"key":"36_CR15","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"crossref","first-page":"293","DOI":"10.1007\/3-540-48285-7_26","volume-title":"Advances in Cryptology - EUROCRYPT \u201993","author":"B. Boer den","year":"1994","unstructured":"den Boer, B., Bosselaers, A.: Collisions for the compression function of MD-5. In: Helleseth, T. (ed.) EUROCRYPT 1993. LNCS, vol.\u00a0765, pp. 293\u2013304. Springer, Heidelberg (1994)"},{"key":"36_CR16","doi-asserted-by":"crossref","unstructured":"Dierks, T., Allen, C.: The TLS protocol. Internet RFC 2246 (1999)","DOI":"10.17487\/rfc2246"},{"key":"36_CR17","series-title":"Lecture Notes in Computer Science","volume-title":"Fast Software Encryption","author":"H. Dobbertin","year":"1996","unstructured":"Dobbertin, H., Bosselaers, A., Preneel, B.: RIPEMD-160: A strengthened version of RIPEMD. In: Gollmann, D. (ed.) FSE 1996. LNCS, vol.\u00a01039. Springer, Heidelberg (1996)"},{"key":"36_CR18","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"crossref","first-page":"494","DOI":"10.1007\/978-3-540-28628-8_30","volume-title":"Advances in Cryptology \u2013 CRYPTO 2004","author":"Y. Dodis","year":"2004","unstructured":"Dodis, Y., Gennaro, R., H\u00e5stad, J., Krawczyk, H., Rabin, T.: Randomness Extraction and Key Derivation Using the CBC, Cascade and HMAC Modes. In: Franklin, M. (ed.) CRYPTO 2004. LNCS, vol.\u00a03152, pp. 494\u2013510. Springer, Heidelberg (2004)"},{"issue":"4","key":"36_CR19","doi-asserted-by":"publisher","first-page":"210","DOI":"10.1145\/6490.6503","volume":"33","author":"O. Goldreich","year":"1986","unstructured":"Goldreich, O., Goldwasser, S., Micali, S.: How to construct random functions. Journal of the ACM\u00a033(4), 210\u2013217 (1986)","journal-title":"Journal of the ACM"},{"key":"36_CR20","doi-asserted-by":"crossref","unstructured":"Harkins, D., Carrel, D.: The Internet Key Exchange (IKE). Internet RFC 2409 (1998)","DOI":"10.17487\/rfc2409"},{"issue":"5","key":"36_CR21","first-page":"1092","volume":"E87-A","author":"S. Hirose","year":"2004","unstructured":"Hirose, S.: A note on the strength of weak collision resistance. IEICE Transactions on Fundamentals\u00a0E87-A(5), 1092\u20131097 (2004)","journal-title":"IEICE Transactions on Fundamentals"},{"key":"36_CR22","doi-asserted-by":"crossref","unstructured":"Krawczyk, H., Bellare, M., Canetti, R.: HMAC: Keyed-hashing for message authentication. Internet RFC 2104 (1997)","DOI":"10.17487\/rfc2104"},{"key":"36_CR23","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"crossref","first-page":"428","DOI":"10.1007\/0-387-34805-0_40","volume-title":"Advances in Cryptology - CRYPTO \u201989","author":"R.C. Merkle","year":"1990","unstructured":"Merkle, R.C.: One way hash functions and DES. In: Brassard, G. (ed.) CRYPTO 1989. LNCS, vol.\u00a0435, pp. 428\u2013446. Springer, Heidelberg (1990)"},{"key":"36_CR24","doi-asserted-by":"crossref","unstructured":"M\u2018 Raihi, D., Bellare, M., Hoornaert, F., Naccache, D., Ranen, O.: HOTP: An MACbased one time password algorithm. Internet RFC 4226 (December 2005)","DOI":"10.17487\/rfc4226"},{"key":"36_CR25","unstructured":"National Institute of Standards and Technology. The keyed-hash message authentication code (HMAC). FIPS PUB 198 (March 2002)"},{"key":"36_CR26","unstructured":"National Institute of Standards and Technology. Secure hash standard. FIPS PUB 180-2 (August 2000)"},{"issue":"1","key":"36_CR27","doi-asserted-by":"publisher","first-page":"188","DOI":"10.1109\/18.746787","volume":"45","author":"B. Preneel","year":"1999","unstructured":"Preneel, B., van Oorschot, P.: On the security of iterated message authentication codes. IEEE Transactions on Information Theory\u00a045(1), 188\u2013199 (1999) (Preliminary version, entitled MD-x MAC and building fast MACs from hash functions, in CRYPTO 1995)","journal-title":"IEEE Transactions on Information Theory"},{"key":"36_CR28","doi-asserted-by":"crossref","unstructured":"Rivest, R.: The MD5 message-digest algorithm. Internet RFC 1321 (April 1992)","DOI":"10.17487\/rfc1321"},{"key":"36_CR29","unstructured":"V. Shoup. Sequences of games: A tool for taming complexity in security proofs.Cryptology ePrint Archive: Report 2004\/332, 2004."},{"key":"36_CR30","doi-asserted-by":"publisher","first-page":"369","DOI":"10.1007\/BF01388651","volume":"4","author":"D. Stinson","year":"1994","unstructured":"Stinson, D.: Universal hashing and authentication codes. Designs, Codes and Cryptography\u00a04, 369\u2013380 (1994)","journal-title":"Designs, Codes and Cryptography"},{"key":"36_CR31","series-title":"Lecture Notes in Computer Science","first-page":"17","volume-title":"Advances in Cryptology \u2013 CRYPTO 2005","author":"X. Wang","year":"2005","unstructured":"Wang, X., Yin, Y.L., Yu, H.: Finding collisions in the full SHA-1. In: Shoup, V. (ed.) CRYPTO 2005. LNCS, vol.\u00a03621, pp. 17\u201336. Springer, Heidelberg (2005)"},{"key":"36_CR32","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"19","DOI":"10.1007\/11426639_2","volume-title":"Advances in Cryptology \u2013 EUROCRYPT 2005","author":"X. Wang","year":"2005","unstructured":"Wang, X., Yu, H.: How to break MD5 and other hash functions. In: Cramer, R. (ed.) EUROCRYPT 2005. LNCS, vol.\u00a03494, pp. 19\u201335. Springer, Heidelberg (2005)"},{"issue":"3","key":"36_CR33","doi-asserted-by":"publisher","first-page":"265","DOI":"10.1016\/0022-0000(81)90033-7","volume":"22","author":"M. Wegman","year":"1981","unstructured":"Wegman, M., Carter, L.: New hash functions and their use in authentication and set equality. Journal of Computer and System Sciences\u00a022(3), 265\u2013279 (1981)","journal-title":"Journal of Computer and System Sciences"}],"container-title":["Lecture Notes in Computer Science","Advances in Cryptology - CRYPTO 2006"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/11818175_36.pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2020,11,17]],"date-time":"2020-11-17T15:16:14Z","timestamp":1605626174000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/11818175_36"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2006]]},"ISBN":["9783540374329","9783540374336"],"references-count":33,"URL":"https:\/\/doi.org\/10.1007\/11818175_36","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2006]]}}}