[Cryptography] Collisions w/SHA-1 ~$100,000 TODAY

Phillip Hallam-Baker phill at hallambaker.com
Sun Oct 11 19:42:59 EDT 2015


On Sun, Oct 11, 2015 at 10:27 AM, Dave Horsfall <dave at horsfall.org> wrote:

>
> Err, when did the PHB get pointy ears?
>

What have my ears got to do with anything?

Could people please stop panicking? Even if an attacker can cause a total
collision, it should not allow them to do anything bad in PKIX or TLS
unless someone goofs.

The WebPKI is like a car that has run flat tires. It is *designed* to be
safe to drive with four flat tires but unless you have a really good reason
not to, you should get the tire replaced as soon as it blows.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://www.metzdowd.com/pipermail/cryptography/attachments/20151011/cb0a7ee8/attachment.html>


More information about the cryptography mailing list