3 ms·
>- Output the length of the input (or a hash of the length if you must have a constant-length output) I think all of the known MD5 collisions (and SHA-1 collis
by AgentME 4y ago
>- Output the length of the input (or a hash of the length if you must have a constant-length output)
I think all of the known MD5 collisions (and SHA-1 collisions even) are of inputs that are the same length.
- jrootabega 4y agoInteresting. I submitted by original comment with the misconception that it second preimage attacks against MD5 were feasible and were being used by the article. So I see how in the case where you want to defend against collisions (e.g. a malicious certificate signing request), length awareness might not help. I'm not sure if that would apply to a second preimage attack, though.