Full Version: Sha-1 Broken.
Tyrano
From: http://www.schneier.com/blog/archives/2005...ha1_broken.html
QUOTE
SHA-1 has been broken. Not a reduced-round version. Not a simplified version. The real thing.

The research team of Xiaoyun Wang, Yiqun Lisa Yin, and Hongbo Yu (mostly from Shandong University in China) have been quietly circulating a paper describing their results:

    * collisions in the the full SHA-1 in 2**69 hash operations, much less than the brute-force attack of 2**80 operations based on the hash length.

    * collisions in SHA-0 in 2**39 operations.

    * collisions in 58-round SHA-1 in 2**33 operations.

This attack builds on previous attacks on SHA-0 and SHA-1, and is a major, major cryptanalytic result. It pretty much puts a bullet into SHA-1 as a hash function for digital signatures (although it doesn't affect applications such as HMAC where collisions aren't important).

The paper isn't generally available yet. At this point I can't tell if the attack is real, but the paper looks good and this is a reputable research team.

More details when I have them.
belgther
i saw it somewhere else...
but i don't know where, maybe here, i heard that it's been kept quite secret how it's been done...
archphase
QUOTE(belgther @ Feb 18 2005, 01:55 PM)
i saw it somewhere else...
but i don't know where, maybe here, i heard that it's been kept quite secret how it's been done...
*



SHA0 was taken off the market in '93? because NSA found some clearly undisclosed vulnerbilty, some french researches in '95 announced their attack but it was never confirmed as the attack.

Anyways, what a parody upon it's acronym.
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.

 
Invision Power Board © 2001-2005 Invision Power Services, Inc.