A Gunsing - Annual International Cryptology Conference, 2022 - Springer
… be possible to build a MAC … compression function is used as a primitive. They also show
that one can use a truncated permutation to create a compression function that is indifferentiable …