A method for collision detection in SHA-1 has been proposed, suitable for attacking PGP.
Researchers from the French National Institute for Research in Computer Science and Automation (INRIA) and Nanyang Technological University (Singapore) have presented the Shambles attack method (PDF), which is touted as the first practical implementation of an attack on the SHA-1 algorithm that can be used to create spoofed digital signatures for PGP and GnuPG. The researchers believe that now all practical attacks on MD5 can also be applied to […]
