{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,3,25]],"date-time":"2025-03-25T14:29:56Z","timestamp":1742912996303,"version":"3.40.3"},"publisher-location":"Berlin, Heidelberg","reference-count":36,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"type":"print","value":"9783662487990"},{"type":"electronic","value":"9783662488003"}],"license":[{"start":{"date-parts":[[2015,1,1]],"date-time":"2015-01-01T00:00:00Z","timestamp":1420070400000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2015]]},"DOI":"10.1007\/978-3-662-48800-3_26","type":"book-chapter","created":{"date-parts":[[2015,11,26]],"date-time":"2015-11-26T12:12:21Z","timestamp":1448539941000},"page":"633-657","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":14,"title":["Tradeoff Cryptanalysis of Memory-Hard Functions"],"prefix":"10.1007","author":[{"given":"Alex","family":"Biryukov","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Dmitry","family":"Khovratovich","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2015,12,30]]},"reference":[{"key":"26_CR1","unstructured":"Litecoin: Mining hardware comparison. https:\/\/litecoin.info\/Mining_hardware_comparison"},{"key":"26_CR2","unstructured":"Password Hashing Competition. https:\/\/password-hashing.net\/"},{"key":"26_CR3","unstructured":"Software tool: John the Ripper password cracker. http:\/\/www.openwall.com\/john\/"},{"key":"26_CR4","unstructured":"Litecoin - Open source P2P digital currency (2011). https:\/\/litecoin.org\/"},{"key":"26_CR5","unstructured":"IETF Draft: The scrypt Password-Based Key Derivation Function (2012). https:\/\/tools.ietf.org\/html\/draft-josefsson-scrypt-kdf-02"},{"key":"26_CR6","unstructured":"Bitcoin: Mining hardware comparison (2014). https:\/\/en.bitcoin.it\/wiki\/Mining_hardware_comparison"},{"key":"26_CR7","unstructured":"Vertcoin: Lyra2RE reference guide (2014). https:\/\/vertcoin.org\/downloads\/Vertcoin_Lyra2RE_Paper_11292014.pdf"},{"issue":"2","key":"26_CR8","doi-asserted-by":"publisher","first-page":"299","DOI":"10.1145\/1064340.1064341","volume":"5","author":"M Abadi","year":"2005","unstructured":"Abadi, M., Burrows, M., Manasse, M.S., Wobber, T.: Moderately hard, memory-bound functions. ACM Trans. Internet Techn. 5(2), 299\u2013327 (2005)","journal-title":"ACM Trans. Internet Techn."},{"key":"26_CR9","doi-asserted-by":"crossref","unstructured":"Alwen, J., Serbinenko, V.: High parallel complexity graphs and memory-hard functions. IACR Cryptology ePrint Archive 2014\/238 (2014)","DOI":"10.1145\/2746539.2746622"},{"key":"26_CR10","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"119","DOI":"10.1007\/978-3-642-38980-1_8","volume-title":"Applied Cryptography and Network Security","author":"J-P Aumasson","year":"2013","unstructured":"Aumasson, J.-P., Neves, S., Wilcox-O\u2019Hearn, Z., Winnerlein, C.: BLAKE2: simpler, smaller, fast as MD5. In: Jacobson, M., Locasto, M., Mohassel, P., Safavi-Naini, R. (eds.) ACNS 2013. LNCS, vol. 7954, pp. 119\u2013135. Springer, Heidelberg (2013)"},{"key":"26_CR11","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"321","DOI":"10.1007\/978-3-642-42045-0_17","volume-title":"Advances in Cryptology - ASIACRYPT 2013","author":"DJ Bernstein","year":"2013","unstructured":"Bernstein, D.J., Lange, T.: Non-uniform cracks in the concrete: the power of free precomputation. In: Sako, K., Sarkar, P. (eds.) ASIACRYPT 2013, Part II. LNCS, vol. 8270, pp. 321\u2013340. Springer, Heidelberg (2013)"},{"key":"26_CR12","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"320","DOI":"10.1007\/978-3-642-28496-0_19","volume-title":"Selected Areas in Cryptography","author":"G Bertoni","year":"2012","unstructured":"Bertoni, G., Daemen, J., Peeters, M., Van Assche, G.: Duplexing the sponge: single-pass authenticated encryption and other applications. In: Miri, A., Vaudenay, S. (eds.) SAC 2011. LNCS, vol. 7118, pp. 320\u2013337. Springer, Heidelberg (2012)"},{"key":"26_CR13","unstructured":"Biryukov, A., Dinu, D., Khovratovich, D.: Argon and argon2: password hashing scheme. Technical report (2015). https:\/\/password-hashing.net\/submissions\/specs\/Argon-v2.pdf"},{"key":"26_CR14","unstructured":"Biryukov, A., Khovratovich, D.: Tradeoff cryptanalysis of memory-hard functions. Cryptology ePrint Archive, Report 2015\/227 (2015). http:\/\/eprint.iacr.org\/"},{"key":"26_CR15","doi-asserted-by":"crossref","unstructured":"Biryukov, A., Pustogarov, I.: Proof-of-work as anonymous micropayment: rewarding a Tor relay. IACR Cryptology ePrint Archive 2014\/1011 (2014). To appear at Financial Cryptography 2015","DOI":"10.1007\/978-3-662-47854-7_27"},{"key":"26_CR16","unstructured":"Chang, D., Jati, A., Mishra, S., Sanadhya, S.K.: Time memory tradeoff analysis of graphs in password hashing constructions. In: Preproceedings of PASSWORDS 2014, pp. 256\u2013266 (2014). http:\/\/passwords14.item.ntnu.no\/Preproceedings_Passwords14.pdf"},{"key":"26_CR17","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"426","DOI":"10.1007\/978-3-540-45146-4_25","volume-title":"Advances in Cryptology - CRYPTO 2003","author":"C Dwork","year":"2003","unstructured":"Dwork, C., Goldberg, A.V., Naor, M.: On memory-bound functions for fighting spam. In: Boneh, D. (ed.) CRYPTO 2003. LNCS, vol. 2729, pp. 426\u2013444. Springer, Heidelberg (2003)"},{"key":"26_CR18","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"37","DOI":"10.1007\/11535218_3","volume-title":"Advances in Cryptology \u2013 CRYPTO 2005","author":"C Dwork","year":"2005","unstructured":"Dwork, C., Naor, M., Wee, H.M.: Pebbling and proofs of work. In: Shoup, V. (ed.) CRYPTO 2005. LNCS, vol. 3621, pp. 37\u201354. Springer, Heidelberg (2005)"},{"key":"26_CR19","doi-asserted-by":"crossref","unstructured":"Dziembowski, S., Faust, S., Kolmogorov, V., Pietrzak, K.: Proofs of space. IACR Cryptology ePrint Archive 2013\/796 (2013). To appear at Crypto 2015","DOI":"10.1007\/978-3-662-48000-7_29"},{"key":"26_CR20","unstructured":"Forler, C., Lucks, S., Wenzel, J.: Catena: a memory-consuming password scrambler. IACR Cryptology ePrint Archive, Report 2013\/525 (2013). Version of 5 January 2014. http:\/\/eprint.iacr.org\/eprint-bin\/getfile.pl?entry=2013\/525&version=20140105:194859&file=525.pdf"},{"key":"26_CR21","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"crossref","first-page":"289","DOI":"10.1007\/978-3-662-45608-8_16","volume-title":"Advances in Cryptology \u2013 ASIACRYPT 2014","author":"C Forler","year":"2014","unstructured":"Forler, C., Lucks, S., Wenzel, J.: Memory-demanding password scrambling. In: Sarkar, P., Iwata, T. (eds.) ASIACRYPT 2014, Part II. LNCS, vol. 8874, pp. 289\u2013305. Springer, Heidelberg (2014)"},{"key":"26_CR22","doi-asserted-by":"crossref","unstructured":"Giridhar, B., Cieslak, M., Duggal, D., Dreslinski, R.G., Chen, H.M., Patti, R., Hold, B., Chakrabarti, C., Mudge, T.N., Blaauw, D.: Exploring DRAM organizations for energy-efficient and resilient exascale memories. In: International Conference for High Performance Computing, Networking, Storage and Analysis (SC 2013), pp. 23\u201335. ACM (2013)","DOI":"10.1145\/2503210.2503215"},{"key":"26_CR23","unstructured":"G\u00fcrkaynak, F., Gaj, K., Muheim, B., Homsirikamol, E., Keller, C., Rogawski, M., Kaeslin, H., Kaps, J.-P.: Lessons learned from designing a 65nm ASIC for evaluating third round SHA-3 candidates. In: Third SHA-3 Candidate Conference, March 2012"},{"issue":"2","key":"26_CR24","doi-asserted-by":"publisher","first-page":"332","DOI":"10.1145\/322003.322015","volume":"24","author":"JE Hopcroft","year":"1977","unstructured":"Hopcroft, J.E., Paul, W.J., Valiant, L.G.: On time versus space. J. ACM 24(2), 332\u2013337 (1977)","journal-title":"J. ACM"},{"key":"26_CR25","unstructured":"Simplicio Jr., M.A., Almeida, L.C., Andrade, E.R., dos Santos, P.C.F., Barreto, P.S.L.M.: The Lyra2 reference guide, version 2.3.2. Technical report, April 2014"},{"issue":"4","key":"26_CR26","doi-asserted-by":"publisher","first-page":"1087","DOI":"10.1145\/322344.322354","volume":"29","author":"Thomas Lengauer and Robert Endre Tarjan","year":"1982","unstructured":"Thomas Lengauer and Robert Endre Tarjan: Asymptotically tight bounds on time-space trade-offs in a pebble game. J. ACM 29(4), 1087\u20131130 (1982)","journal-title":"J. ACM"},{"key":"26_CR27","unstructured":"Malvoni, K.: Energy-efficient bcrypt cracking. In: Passwords 2014 Conference (2014). http:\/\/www.openwall.com\/presentations\/Passwords14_Energ_Efficient_Cracking\/"},{"key":"26_CR28","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"337","DOI":"10.1007\/11908739_24","volume-title":"Advances in Information and Computer Security","author":"S Mukhopadhyay","year":"2006","unstructured":"Mukhopadhyay, S., Sarkar, P.: On the effectiveness of TMTO and exhaustive search attacks. In: Yoshiura, H., Sakurai, K., Rannenberg, K., Murayama, Y., Kawamura, S. (eds.) IWSEC 2006. LNCS, vol. 4266, pp. 337\u2013352. Springer, Heidelberg (2006)"},{"key":"26_CR29","unstructured":"Nakamoto, S.: Bitcoin: a peer-to-peer electronic cash system (2009). http:\/\/www.bitcoin.org\/bitcoin.pdf"},{"key":"26_CR30","unstructured":"Percival, C.: Stronger key derivation via sequential memory-hard functions (2009). http:\/\/www.tarsnap.com\/scrypt\/scrypt.pdf"},{"key":"26_CR31","unstructured":"Peslyak, A.: Yescrypt - a password hashing competition submission. Technical report (2014). http:\/\/password-hashing.net\/submissions\/specs\/yescrypt-v0.pdf"},{"issue":"2","key":"26_CR32","doi-asserted-by":"publisher","first-page":"298","DOI":"10.1137\/0206022","volume":"6","author":"N Pippenger","year":"1977","unstructured":"Pippenger, N.: Superconcentrators. SIAM J. Comput. 6(2), 298\u2013304 (1977)","journal-title":"SIAM J. Comput."},{"key":"26_CR33","doi-asserted-by":"crossref","unstructured":"Ristenpart, T., Tromer, E., Shacham, H., Savage, S.: Hey, you, get off of my cloud: exploring information leakage in third-party compute clouds. In: Proceedings of the 2009 ACM Conference on Computer and Communications Security, CCS 2009, Chicago, Illinois, USA, 9\u201313 November 2009, pp. 199\u2013212 (2009)","DOI":"10.1145\/1653662.1653687"},{"key":"26_CR34","unstructured":"Sprengers, M., Batina, L.: Speeding up GPU-based password cracking. In: SHARCS 2012 (2012). http:\/\/2012.sharcs.org\/record.pdf"},{"key":"26_CR35","doi-asserted-by":"crossref","unstructured":"Thompson, C.D.: Area-time complexity for VLSI. In: STOC 1979, pp. 81\u201388. ACM (1979)","DOI":"10.1145\/800135.804401"},{"key":"26_CR36","unstructured":"Wu, H.: POMELO: a password hashing algorithm. Technical report (2014). https:\/\/password-hashing.net\/submissions\/specs\/POMELO-v1.pdf"}],"container-title":["Lecture Notes in Computer Science","Advances in Cryptology \u2013 ASIACRYPT 2015"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-662-48800-3_26","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2023,8,16]],"date-time":"2023-08-16T00:04:09Z","timestamp":1692144249000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-662-48800-3_26"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2015]]},"ISBN":["9783662487990","9783662488003"],"references-count":36,"URL":"https:\/\/doi.org\/10.1007\/978-3-662-48800-3_26","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2015]]},"assertion":[{"value":"30 December 2015","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}}]}}