3 ms·
I find these issues all too common among programmers. Especially with regards to MD5 and SHA1. They see a headline saying "SHA1 is now fully broken!", but in re
by Genbox 4y ago
I find these issues all too common among programmers. Especially with regards to MD5 and SHA1. They see a headline saying "SHA1 is now fully broken!", but in reality it is a fluff-piece on either Shattered (Google) or Sha-mbles (Leurent, Peyrin), and broken is used for effect more than anything else.
While it is quite impressive when someone manages to reduce the attack complexity, by let's say, reducing the cost of a chosen-prefix collision from billions of GPU hours to millions, it does not make the algorithm completely useless from one day to the next. It has to be taken into context.