3 ms·
While not saying how they did it, shouldn't they be able to prove it? By showing some colliding hashes or so?
by maaaats 7y ago
While not saying how they did it, shouldn't they be able to prove it? By showing some colliding hashes or so?
- dooglius 7y agoTo play devil's advocate, the hashes might imply details of how it was done.
- masklinn 7y agoUnlikely, but regardless if they have a preimage attack they could simply release a collision. That is a much lower standard than a preimage (and trivial if you do have the computational ability to preimage), and was sufficient to declare SHA1 broken (SHAttered is a public collision, AFAIK there still is no preimage against a "full strength" SHA1).
- pxx 7y agoThere's no feasible preimage against even md5 still.
- masklinn 7y agoIt's not just that, they're claiming computationally feasible preimage attack, something which AFAIK has not been feasibly achieved in SHA1 (SHAttered is a collision attack).
- johnsilver19 7y agoA preimage attack still isn't feasible for MD5. What an absolutely ridiculous claim they made.