SHA-1 collisions now at 2^{52}?

Perry E. Metzger perry at
Thu Apr 30 23:07:31 EDT 2009

Greg Rose <ggr at> writes:
>> This is a very important result. The need to transition from SHA-1
>> is no longer theoretical.
> It already wasn't theoretical... if you know what I mean. The writing
> has been on the wall since Wang's attacks four years ago.

Sure, but this should light a fire under people for things like TLS 1.2.

Perry E. Metzger		perry at

The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo at

More information about the cryptography mailing list