1. E. Biham, and A. Shamir. Cryptanalysis of the Full 16-Round DES, CRYPTO'92 LNCS 740, pp 487–496, 1993.
2. B. den Boer, and A. Bosselaers. Collisions for the compression function of MD5, EUROCRYPT'93 LNCS 773, pp 293–304, 1994.
3. A. Canteaut, and F. Chabaud. A new algorithm for finding minimum-weight words in a linear code: Application to primitive narrow-sense BCH codes of length 511, IEEE Trans. Inform. Theory, IT-44(1), pp 367–378, Jan. 1998.
4. H. Dobbertin. Cryptanalysis of MD4, Fast Software Encryption LNCS 1039, pp 53–69, 1996.
5. R. Rivest. The MD4 Message-Digest Algorithm, CRYPTO'90 LNCS 537, pp 303–311, 1991.