[Cryptography] Google announces practical SHA-1 collision attack

Michael Kjörling michael at kjorling.se
Thu Feb 23 08:55:17 EST 2017


https://security.googleblog.com/2017/02/announcing-first-sha1-collision.html

> * Nine quintillion (9,223,372,036,854,775,808) SHA1 computations in total
> * 6,500 years of CPU computation to complete the attack first phase
> * 110 years of GPU computation to complete the second phase

> Following Google’s vulnerability disclosure policy, we will wait 90
> days before releasing code that allows anyone to create a pair of
> PDFs that hash to the same SHA-1 sum given two distinct images with
> some pre-conditions.

-- 
Michael Kjörling • https://michael.kjorling.semichael at kjorling.se
                 “People who think they know everything really annoy
                 those of us who know we don’t.” (Bjarne Stroustrup)


More information about the cryptography mailing list