Activities of the NÚKIB in the field of cryptographic protection

In the area of cryptographic protection, the NÚKIB performs, among other things:

  • provision and coordination of cryptological research and development, management of cryptographic protection of classified information (Decree 432/2011 Coll., on ensuring cryptographic protection of classified information),
  • certification of cryptographic products and cryptographic workplaces (Decree No. 525/2005 Coll., on the implementation of certification in ensuring the cryptographic protection of classified information).
  • These activities are the responsibility of the Information and Communication Technology Security Department of the NÚKIB.

NÚKIB statement on the use of hash functions

Hash functions are functions where a fixed length output is assigned to any input. The function should have the property of unidirectionality and inconsistency.

Due to the rapid development in the area of cryptoanalysis of hashing functions (collision finding for some hashing functions) and these functions are used in a number of security applications (e.g. electronic signature, etc.) and also in many cryptographic products, NÚKIB issues the following statement:

  1. It is recommended to no longer use hash functions with output less than 160 bits (e.g. hash functions MD4, MD5, RIPEMD, HAVAL-128, etc.).
  2. It is recommended to immediately start the preparation for the transition from the SHA-1 hash function to the new generation of SHA-2 class hash functions (SHA-224, SHA-256, SHA-384 and SHA-512).
  3. It is recommended to examine all security applications and cryptographic products that use hashing functions and expertly assess the impact of the latest cryptoanalytical attacks on their security.