On Mon, 14 Mar 2005, Ferdinand Prantl wrote:

Hi,

you may want to read yet another paper, where a different,
faster method is introduced, than the chinese one (english):

http://cryptography.hyperlink.cz/md5/MD5_collisions.pdf

Careful. This is with MD5, a different (but still related) algorithm than SHA-1.


Note that the same attack was applied to both MD5 and SHA-1. It dropped the cost of finding a collision in SHA-1 from 2^80 to about 2^69- but it dropped the cost of finding a collision in MD5 from 2^64 to something south of 2^40. So it was signifigantly more effective on MD5 than SHA-1.

Brian

______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    openssl-users@openssl.org
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to