ππππ ππ»π demystifying hash collisions
Key | Action |
---|---|
K or space | Play / Pause |
M | Mute / Unmute |
C | Select next subtitles |
A | Select next audio track |
V | Show slide in full page or toggle automatic source change |
left arrow | Seek 5s backward |
right arrow | Seek 5s forward |
shift + left arrow or J | Seek 10s backward |
shift + right arrow or L | Seek 10s forward |
control + left arrow | Seek 60s backward |
control + right arrow | Seek 60s forward |
shift + down arrow | Decrease volume |
shift + up arrow | Increase volume |
shift + coma | Decrease playback speed |
shift + dot or shift + semicolon | Increase playback speed |
end | Seek to end |
beginning | Seek to beginning |
Share this media
Information on this media
Creation date:
July 1st, 2019, 2:15 p.m.Add date:
July 5th, 2019, 6:13 p.m.Number of views:
165 (this month: 13)Speaker:
Ange AlbertiniLicense:
CC BY-SA v4Visibility:
This media is publishedDescription
You probably think when reading this: “MD5 is already broken!”. Yes, it’s possible to create two different files with the same MD5 in a few seconds, or make two arbitrary files get the same MD5 in a few hours, but it has some limited impact.
Since MD5 is considered broken by experts, it’s now out of scope for research, and yet these two attacks are probably not scary enough so developers still think that MD5 is good to index or verify files.
This talk is a joint effort between Marc Stevens and Ange Albertini, associating the best known cryptographic attacks with new file format manipulations, and will present instant collisions of many common file types, and help you understand how it’s done and their impact, which hopefully will convince everyone to kill MD5 for good.
SHA1 is covered too, but the impact of existing attacks is more limited at this stage.
Speaker
Ange Albertini
Bio
Author of Corkami
Other media in the channel "2019"
795 views, 7 this monthPatrOwl - Orchestrating SecOps with an open-source SOAR platformJuly 3rd, 2019
121 viewsBetter curl !July 3rd, 2019
37 views, 2 this monthManaging a growing fleet of WiFi routers combining OpenWRT, WireGuard, Salt and ZabbixJuly 3rd, 2019
31 viewsNo IT security without Free SoftwareJuly 3rd, 2019
31 viewsD4 Project - Design and Implementation of an Open Source Distributed and Collaborative Security MonitoringJuly 3rd, 2019
11 viewsProgramming research, a missed opportunity for secure and libre software?July 3rd, 2019