Watson Ladd <watsonbl...@gmail.com> writes: >SHA-1 collisions have not yet been found. Marc Stevens has published >algorithms he claims reduce the complexity of finding these collisions to >feasible amounts, but they have not yet been run. However, free-start >collisions have been found, as have ways to modify constants in the SHA-1 IV >to get collisions.
I'm aware of that (and related) work, but this is about finding multicollisions in MD5 || SHA1. Peter. _______________________________________________ TLS mailing list TLS@ietf.org https://www.ietf.org/mailman/listinfo/tls