(no subject)
Feb. 16th, 2005 09:35 am![[personal profile]](https://www.dreamwidth.org/img/silk/identity/user.png)
From: "Steven M. Bellovin" <smb@cs.columbia.edu> To: cryptography@metzdowd.com Subject: SHA-1 cracked Date: Tue, 15 Feb 2005 23:29:43 -0500 According to Bruce Schneier's blog (http://www.schneier.com/blog/archives/2005/02/sha1_broken.html), a team has found collisions in full SHA-1. It's probably not a practical threat today, since it takes 2^69 operations to do it and we haven't heard claims that NSA et al. have built massively parallel hash function collision finders, but it's an impressive achievement nevertheless -- especially since it comes just a week after NIST stated that there were no successful attacks on SHA-1.
This comes in the shadow of the SHA-0 collisions announced at CRYPTO '04. This means that it's 2048 times easier to come up with a piece of data which hashes to the same hash as a chosen piece of text. It doesn't mean that your banking sessions are insecure--not yet at any rate. It does mean we need to be looking for a replacement algorithm to use for digital signing.
no subject
Date: 2005-02-16 06:00 pm (UTC)no subject
Date: 2005-02-16 06:05 pm (UTC)no subject
Date: 2005-02-16 06:59 pm (UTC)no subject
Date: 2005-02-17 02:00 am (UTC)no subject
Date: 2005-02-17 03:45 am (UTC)Collisions refer to two different pieces of data hashing to the same hash code. Cryptographers like to talk about ideal, collision free hash functions in which every unique block of data has a unique hash code, but in reality this is a very difficult property to prove. We use hashes in cryptography to create digital signatures of data, proving that the data was not modified in transit. If collisions are possible, it is possible to alter data while leaving its signature intact.
In reality, the news regarding SHA-1 (a supposedly much stronger hash function than SHA-0), means very little in the near term. Collisions are possible, but engineering them in all likelihood still remains difficult. This means while it may be possible in 2^69 steps to generate a piece of data that hashes to a specific value, it will still be very difficult to modify an existing piece of data to make it say what you want to say and still retain the same hash code.
no subject
Date: 2005-02-17 04:53 am (UTC)Actually it's very easy to prove that collisions exist, given the difference in size between the data being hashed and the resulting hash. What they'd like to believe about a supposedly ideal hash is that the distribution is completly random and that you can't take any shortcuts when trying to find a collision.
And in other news, crap, that's going to make work interesting. I don't remember off the top of my head if Crypto API has any other good hashes. I'll have to talk to my boss and see what he thinks about it.
no subject
Date: 2005-02-17 05:27 am (UTC)no subject
Date: 2005-02-17 05:30 am (UTC)no subject
Date: 2010-08-10 01:28 am (UTC)Playstation Move Bundle
Date: 2010-09-19 01:45 pm (UTC)no subject
Date: 2011-02-16 11:11 pm (UTC)no subject
Date: 2011-02-23 03:25 am (UTC)no subject
Date: 2011-02-25 12:29 am (UTC)Cherry Rain And Julian
Date: 2011-05-30 02:28 pm (UTC)Surgossegi ellatas
Date: 2011-06-11 08:20 pm (UTC)Diabetes
Date: 2011-06-12 02:54 am (UTC)Rant
Date: 2011-06-16 07:48 pm (UTC)no subject
Date: 2011-06-23 01:58 am (UTC)no subject
Date: 2011-07-25 01:09 pm (UTC)no subject
Date: 2011-12-10 02:38 am (UTC)[url=http://www.guangjie987.com]Hi,My dear friend[/url]
Date: 2012-05-13 04:35 am (UTC)no subject
Date: 2012-07-05 11:14 am (UTC)no subject
Date: 2012-11-20 04:15 am (UTC)Легальные порошки
Date: 2013-02-28 10:37 am (UTC)приятно удивлен быстротой и слаженностью работы магаза djarus.ru благодарю
Легальность 2011
Date: 2013-04-04 08:48 am (UTC)тоже делал заказ в russianhark.ru . всё пришло вовремя. спасибо менеджерам.
Все, что хочешь - интернет магазин гиперлегальности
Date: 2013-05-02 09:23 pm (UTC)Отличная работа парни djarus.ru, продолжайте в том же духе
я с вами
Все, что хочешь - интернет магазин гиперлегальности
Date: 2014-06-03 07:19 pm (UTC)Ко мне порох c herbalcompany.ru шел всего три дня по мажор экспресс... С корешами замутили миксов из него и куранули - веррриии гудд.. буду брать у вас еще..