Jump to content
begood

SHA-1 collisions now 2^52

Recommended Posts

Posted (edited)

In November 2008, Stéphane Manuel published a new disturbance

vector for SHA-1 with complexity 2^57. He provided no differential path

through the first 20 steps.

Using Joux and Peyrin’s boomerang attack with n auxiliary

differentials, the complexity can be reduced to 2(57?n).

Our goal is to find a non-linear main differential path through the

first 20 steps where a maximum number of auxiliary differentials can

be applied.

Achieved: A differential path with 5 independent auxiliary paths -

complexity 2^52.

http://eurocrypt2009rump.cr.yp.to/837a0a8086fa6ca714249409ddfae43d.pdf

Edited by begood
Posted
Nu ai inteles, hasul e generat din stringul USER:PAROLA, degeaba au aceeasi parola (ceea ce nu e cazul aici) => stringuri diferite => hashuri identice => SHA1 collision

vreau parolele roaga-i sa ti le trimita, e interesanta chestia !

don't worry i don't give a fuck about their accounts.

Posted (edited)

eu nu cred ca ai doua coliziuni

ia mai verifica tu algoritmul tau, ma prea indoiesc ca e sha1(username : password)

gandeste-te. sansele sa se intample asta sunt 1 la 2^53

1 : 9007199254740992

mai degraba e sha1 (password) sau mysql5(password).

verifica facand un cont nou cu parola "aaaaa", vezi hashul din baza de date si compara-l cu datele generate aici. asa poti fi sigur de algoritmul folosit.

Edited by begood
Posted (edited)

frate, nu te tratez nicicum, vreau doar username-ul si parola de la cei doi, ii poti ruga frumos sa ti-o dea si sa-si schimbe parola apoi.

E foarte interesanta chestia descoperita !

//am tendinta sa explic cat mai detaliat. asta nu inseamna ca te subestimez, e din obisnuinta.

Edited by begood

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.



×
×
  • Create New...