Re: [SLUG] Suse / Yast

From: Larry Brown (larry.brown@dimensionnetworks.com)
Date: Wed Aug 25 2004 - 18:43:10 EDT


On Wed, 2004-08-25 at 14:58, Levi Bard wrote:
> > Root password:
> > Use MD5 encryption, not the blowfish default
>
> MD5 hashing may be going away - from
> http://www.theregister.co.uk/2004/08/19/hash_crypto/ :
>
> "And Chinese researchers from Shandong University have published a
> paper (PDF) outlining mathematical attacks on MD5 that have been
> independently reproduced."
> ----------------------------------------------------------------------

This is what they refer to as independently reproduced...

So, this looks like it isn't actually a collision in MD5, but rather in
some other algorithm, MD5'.

grant it they further went on to state that they don't see why their work
couldn't be applied against actual MD5. The other machine that found a
"collision" which is only one helpful step to breaking the code was a 256
node Intel Itanium2 system called Tera Tech after 80,000 cpu hours. Although
this is progress, it doesn't mean MD5 is going to be replaced any time soon.

-----------------------------------------------------------------------
This list is provided as an unmoderated internet service by Networked
Knowledge Systems (NKS). Views and opinions expressed in messages
posted are those of the author and do not necessarily reflect the
official policy or position of NKS or any of its employees.



This archive was generated by hypermail 2.1.3 : Fri Aug 01 2014 - 15:24:30 EDT