Tuesday, February 15, 2005

SHA-1 is Broken!

Wow! Another secure hash function cryptographic scheme bites the dust!
According to this, a team from China has broken SHA-1 in 2^69 operations.
Only a few months ago, the same team has broken MD4, MD5, HAVAL-128 and RIPEMD: a huge accomplishment at the time.

Until now SHA-1 was believed to be secure, unlike its close predecessor SHA: which was previously found to be insecure. This result will have a major effect on digital signature schemes that were using SHA-1 for signing messages.

Updated 20/02/05: Bruce Schneier, an expert in cryptography, wrote an interesting post about cryptographic hash functions, some more details about consequences of this result, what's being done about it in the industry and potential replacements for SHA-1

0 Comments:

Post a Comment

<< Home