[56334] in cryptography@c2.net mail archive
RE: [Cfrg] Applications of target collisions: Pre or post-dating MD5-based RFC 3161 time-stamp tokens
daemon@ATHENA.MIT.EDU (Weger, B.M.M. de)
Thu Oct 26 16:20:41 2006
X-Original-To: cryptography@metzdowd.com
X-Original-To: cryptography@metzdowd.com
Date: Thu, 26 Oct 2006 21:20:59 +0200
In-Reply-To: <20061026131314.327fcc1f.smb@cs.columbia.edu>
From: "Weger, B.M.M. de" <b.m.m.d.weger@TUE.nl>
To: "Steven M. Bellovin" <smb@cs.columbia.edu>,
"Alfonso De Gregorio" <adg@crypto.lo.gy>
Cc: <cryptography@metzdowd.com>, <cfrg@ietf.org>,
<hash-forum@nist.gov>, <ietf-pkix@imc.org>
Hi Steven,
> So how close are we getting to first or second preimage attacks?
As far as we know, not one bit closer.=20
Best known attack on MD5 preimage resistance still is brute force.=20
You may interpret our result as enlarging the applicability of=20
collision attacks. In that sense the gap to preimage attacks has=20
diminished. But we have no measure available to tell by how much.
Grtz,
Benne de Weger
---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com