[Boards: 3 / a / aco / adv / an / asp / b / bant / biz / c / can / cgl / ck / cm / co / cock / d / diy / e / fa / fap / fit / fitlit / g / gd / gif / h / hc / his / hm / hr / i / ic / int / jp / k / lgbt / lit / m / mlp / mlpol / mo / mtv / mu / n / news / o / out / outsoc / p / po / pol / qa / qst / r / r9k / s / s4s / sci / soc / sp / spa / t / tg / toy / trash / trv / tv / u / v / vg / vint / vip / vp / vr / w / wg / wsg / wsr / x / y ] [Search | Free Show | Home]

SHA-1 is kill

This is a blue board which means that it's for everybody (Safe For Work content only). If you see any adult content, please report it.

Thread replies: 12
Thread images: 2

File: shattered-infographic.png (194KB, 449x1600px) Image search: [Google]
shattered-infographic.png
194KB, 449x1600px
Google cracked it and will release the method in 90 days.

https://security.googleblog.com/2017/02/announcing-first-sha1-collision.html
>>
Collision attack, not preimage.
Still fine for integrity checks.
But broken authentication and attestation.
>>
Mozilla knew this 3 years ago :^)
https://blog.mozilla.org/security/2014/09/23/phasing-out-certificates-with-sha-1-based-signature-algorithms/
>>
>>59080260
>you need 12 million gpus to crack it
>>
>>59080942
I think they're saying their attack required 100 GPUs for a year instead of 12 million GPUs for a year to just brute force.

So if you used 1000 GPUs you could do this attack in a month, if you used 3000 it would take 12 days, if you used 5000 it would take one week.
>>
>not using SHA-256/SHA-512
>>
>>59082189
>not using SHA3
>>
>>59080766
Everyone knew this 3 years ago. SHA-1 has been deprecated for a while
>>
File: wow-its-fucking-nothing.jpg (27KB, 290x350px) Image search: [Google]
wow-its-fucking-nothing.jpg
27KB, 290x350px
>Has this been abused in the wild?
>Not as far as we know.

>This attack required over 9,223,372,036,854,775,808 SHA1 computations. This took the equivalent processing power as 6,500 years of single-CPU computations and 110 years of single-GPU computations.
>>
Why aren't you using the Whirlpool hash function yet, anon?

http://www.larc.usp.br/~pbarreto/WhirlpoolPage.html
>>
good thing I SHA-512
>>
>>59080942
Alright let me check my basement...brb
Thread posts: 12
Thread images: 2


[Boards: 3 / a / aco / adv / an / asp / b / bant / biz / c / can / cgl / ck / cm / co / cock / d / diy / e / fa / fap / fit / fitlit / g / gd / gif / h / hc / his / hm / hr / i / ic / int / jp / k / lgbt / lit / m / mlp / mlpol / mo / mtv / mu / n / news / o / out / outsoc / p / po / pol / qa / qst / r / r9k / s / s4s / sci / soc / sp / spa / t / tg / toy / trash / trv / tv / u / v / vg / vint / vip / vp / vr / w / wg / wsg / wsr / x / y] [Search | Top | Home]

I'm aware that Imgur.com will stop allowing adult images since 15th of May. I'm taking actions to backup as much data as possible.
Read more on this topic here - https://archived.moe/talk/thread/1694/


If you need a post removed click on it's [Report] button and follow the instruction.
DMCA Content Takedown via dmca.com
All images are hosted on imgur.com.
If you like this website please support us by donating with Bitcoins at 16mKtbZiwW52BLkibtCr8jUg2KVUMTxVQ5
All trademarks and copyrights on this page are owned by their respective parties.
Images uploaded are the responsibility of the Poster. Comments are owned by the Poster.
This is a 4chan archive - all of the content originated from that site.
This means that RandomArchive shows their content, archived.
If you need information for a Poster - contact them.