4 ms·
You'd probably be interested in the "Too Much Crypto" paper linked in the post: https://eprint.iacr.org/2019/1492 https://eprint.iacr.org/2019/1492
by nemo1618 3y ago
You'd probably be interested in the "Too Much Crypto" paper linked in the post: https://eprint.iacr.org/2019/1492 https://eprint.iacr.org/2019/1492
- Joker_vD 3y ago> To support this claim, we review the cryptanalysis progress in the last 20 years, ...and rationally and scientifically assuming that the rate of the progress won't increase and that there will be no major breakthroughs in the future, we propose revised number of rounds for AES, BLAKE2, ChaCha, and SHA-3. The crypto is already fast enough, thank you very much; many attacks work only precisely it's quite fast to brute force huge subspaces of key material.
- tptacek 3y agoWhich attacks would those be? Are you thinking about password cracking? What are the other ones?
- tedunangst 3y agoSHA-1 collisions are (almost) as much brute force as anything.
- tptacek 3y agoBut that's not because SHA-1 doesn't have enough rounds; there's a more fundamental flaw in SHA-1.
- tedunangst 3y agoOkay, fair, I hallucinated bits into the statement.