Re: nitpick

by dragonchild (Archbishop)
on Aug 27, 2004 at 01:32 UTC

in reply to nitpick
in thread On showing the weakness in the MD5 digest function and getting bitten by scalar context

Not having followed the recognization of MD5's weakness(es), it looks as if your two strings differ by the significant bit on the 20th, 30th, etc bytes. That looks like someone mathematically broke MD5. Now, wouldn't SHA-n have a similar problem, but with a much larger sample set? Or, is it because the algorithm took liberties it shouldn't have taken?

Replies are listed 'Best First'.
Re^2: nitpick
on Aug 27, 2004 at 16:38 UTC

    SHA-0 was shown to be weak by a similar technique, as well as a reduced form of SHA-1 (40 rounds instead of 80, IIRC). Since such discoveries tend to promote other deiscoveries along the same lines, there is cause to be distrustful of SHA-1. Don't Panic, but be distrustful.

    Basically, this is a good time to come up with a totally new hash algorithm, since most of the existing ones are based on MD4.

