MD5 collisions?

Whyte, William WWhyte at ntru.com
Wed Aug 18 12:04:56 EDT 2004


> There has been criticism about the Wang et. al paper that "it doesn't 
> explain how they get the collisions". That isn't right. Note that from the

> incorrect paper to the corrected one, the "delta" values didn't change. 
> Basically, if you throw random numbers in as inputs, in pairs with the 
> specified deltas, you should eventually be able to create your own MD5 
> collisions for fun or profit.

So this is big. This doesn't just break collision resistance, it
breaks second preimage resistance. Is that right?

William

---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo at metzdowd.com



More information about the cryptography mailing list