4 ms·
Uh. All of the current SHA-3 candidates are as fast or faster than SHA-1. That's one of the contest's design goals: NIST expects SHA–3 to have a security stren
by codahale 17y ago
Uh. All of the current SHA-3 candidates are as fast or faster than SHA-1. That's one of the contest's design goals:
NIST expects SHA–3 to have a security strength that is at least as good as the hash algorithms currently specified in FIPS 180–2, and that this security strength will be achieved with significantly improved efficiency.
http://csrc.nist.gov/groups/ST/hash/documents/FR_Notice_Nov07.pdf http://csrc.nist.gov/groups/ST/hash/documents/FR_Notice_Nov0...
- sordidarray 17y agoYes, that's why I specifically said, "in current use." No one should be using SHA-3 hash functions. SHA-256 and SHA-1 are much slower than MD5 and very much slower than MD4. The "Getting much better" comment was in reference to speed improvements as well as security improvements (such as removal of vulnerability to length-extension attacks).