ππππ ππ»π demystifying hash collisions
Key | Action |
---|---|
K or space | Play / Pause |
M | Mute / Unmute |
C | Select next subtitles |
A | Select next audio track |
V | Show slide in full page or toggle automatic source change |
left arrow | Seek 5s backward |
right arrow | Seek 5s forward |
shift + left arrow or J | Seek 10s backward |
shift + right arrow or L | Seek 10s forward |
control + left arrow | Seek 60s backward |
control + right arrow | Seek 60s forward |
shift + down arrow | Decrease volume |
shift + up arrow | Increase volume |
shift + comma | Decrease playback rate |
shift + dot or shift + semicolon | Increase playback rate |
end | Seek to end |
beginning | Seek to beginning |
Share this media
HLS video stream
You can use an external player to play this stream (like VLC).
HLS video streamInformation on this media
Links:
Number of views:
215 (this month: 1)Creation date:
July 1, 2019Speakers:
Ange AlbertiniLicense:
CC BY-SA v4Description
You probably think when reading this: “MD5 is already broken!”. Yes, it’s possible to create two different files with the same MD5 in a few seconds, or make two arbitrary files get the same MD5 in a few hours, but it has some limited impact.
Since MD5 is considered broken by experts, it’s now out of scope for research, and yet these two attacks are probably not scary enough so developers still think that MD5 is good to index or verify files.
This talk is a joint effort between Marc Stevens and Ange Albertini, associating the best known cryptographic attacks with new file format manipulations, and will present instant collisions of many common file types, and help you understand how it’s done and their impact, which hopefully will convince everyone to kill MD5 for good.
SHA1 is covered too, but the impact of existing attacks is more limited at this stage.
Speaker
Ange Albertini
Bio
Author of Corkami
Other media in the channel "2019"
981 views, 1 this monthPatrOwl - Orchestrating SecOps with an open-source SOAR platformJuly 3rd, 2019
136 views, 1 this monthBetter curl !July 3rd, 2019
101 views, 2 this monthManaging a growing fleet of WiFi routers combining OpenWRT, WireGuard, Salt and ZabbixJuly 3rd, 2019
32 viewsNo IT security without Free SoftwareJuly 3rd, 2019
33 views, 1 this monthD4 Project - Design and Implementation of an Open Source Distributed and Collaborative Security MonitoringJuly 3rd, 2019
15 viewsProgramming research, a missed opportunity for secure and libre software?July 3rd, 2019