[1785] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

dobertin & md5

daemon@ATHENA.MIT.EDU (Adam Back)
Tue Nov 4 18:18:26 1997

Date: Tue, 4 Nov 1997 21:45:36 GMT
From: Adam Back <aba@dcs.ex.ac.uk>
To: cryptography@c2.net


Did Dobertin publish a paper after his 2 page paper with sample
collisions in it?

I am curious as to the size of the set of pre-images for which he can
construct collisions from and the work factors.  This to work out how
big of a threat it poses in various settings.

I am interested to estimate the probabilities of his attack working on
a given md5/rsa based signature.

I was also having an off list discusion with someone about hmac-md5.
The hmac construct would be less vulnerable due to the double
application of a hash I figure.

Thoughts, comments, URL for second Dobertin paper on md5 collisions?

Adam
-- 
Now officially an EAR violation...
Have *you* exported RSA today? --> http://www.dcs.ex.ac.uk/~aba/rsa/

print pack"C*",split/\D+/,`echo "16iII*o\U@{$/=$z;[(pop,pop,unpack"H*",<>
)]}\EsMsKsN0[lN*1lK[d2%Sa2/d0<X+d*lMLa^*lN%0]dsXx++lMlN/dsM0<J]dsJxp"|dc`

home help back first fref pref prev next nref lref last post