[144380] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

Re: SHA-1 collisions now at 2^{52}?

daemon@ATHENA.MIT.EDU (Perry E. Metzger)
Thu Apr 30 19:41:20 2009

To: cryptography@metzdowd.com
From: "Perry E. Metzger" <perry@piermont.com>
Date: Thu, 30 Apr 2009 19:31:26 -0400
In-Reply-To: <20090430213718.8188119525D@kilo.networkresonance.com> (Eric Rescorla's message of "Thu\, 30 Apr 2009 14\:37\:18 -0700")


Eric Rescorla <ekr@networkresonance.com> writes:
> McDonald, Hawkes and Pieprzyk claim that they have reduced the collision
> strength of SHA-1 to 2^{52}.
>
> Slides here:
> http://eurocrypt2009rump.cr.yp.to/837a0a8086fa6ca714249409ddfae43d.pdf
>
> Thanks to Paul Hoffman for pointing me to this.

This is a very important result. The need to transition from SHA-1 is no
longer theoretical.

Perry

---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com

home help back first fref pref prev next nref lref last post