SHA-1 collisions now at 2^{52}?

Perry E. Metzger perry at
Thu Apr 30 23:07:31 EDT 2009

Greg Rose <ggr at> writes:
>> This is a very important result. The need to transition from SHA-1
>> is no longer theoretical.
> It already wasn't theoretical... if you know what I mean. The writing
> has been on the wall since Wang's attacks four years ago.

Sure, but this should light a fire under people for things like TLS 1.2.

