Imwe nzira inoshanda yekuona kudhumhana prefixes yeSHA-1 inoratidzwa.

Vatsvagiri kubva kuFrench National Institute for Research in Informatics uye Automation (INRIA) uye Nanyang Technological University (Singapore) developed kuvandudzwa nzira kurwisa kune iyo SHA-1 algorithm, iyo inorerutsa zvakanyanya kusikwa kwemagwaro maviri akasiyana ane akafanana SHA-1 hashes. Izvo zvakakosha zveiyo nzira ndeyekudzikisa kushanda kweiyo yakazara kudhumhana kusarudzwa muSHA-1 kusvika kukonderana nechivakashure chakapihwa, umo kudhumhana kunoitika kana mamwe maprefixes aripo, zvisinei nedata rese riri museti. Mune mamwe mazwi, unogona kuverenga maviri akafanotsanangurwa prefixes uye kana ukabatanidza imwe kune rimwe gwaro uye imwe kune yechipiri, inoguma SHA-1 hashes yemafaira aya ichafanana.

Iyi mhando yekurwisa ichiri kuda maverengero makuru uye kusarudzwa kwe prefixes kunoramba kwakaoma kupfuura kusarudzwa kwakajairwa kwekudhumhana, asi kunyatsoshanda kwemhedzisiro kwakakwira zvakanyanya. Nepo kusvika pari zvino iyo nzira inokurumidza yekutsvaga prefixes yekudhumhana muSHA-1 yaida 277.1 mashandiro, iyo nzira nyowani inoderedza huwandu hwemaverengero kubva pa266.9 kusvika 269.4. Neiyi nhanho yekombuta, iyo inofungidzirwa mutengo wekurwiswa isingasviki zana rezviuru zvemadhora, izvo zviri mukati menzira dzemasangano ehungwaru nemakambani makuru. Kuenzanisa, kutsvaga kudhumhana nguva dzose kunoda mashandiro anoita 264.7.

Π’ yekupedzisira kuratidzira Kugona kweGoogle kugadzira mafaera ePDF akasiyana ane SHA-1 hashi yakafanana kushandiswa manomano anosanganisira kubatanidza magwaro maviri kuita faira rimwe chete, kushandura dhizaini rinooneka uye kushandura mucherechedzo wekusarudzwa kunzvimbo uko kudhumhana kunoitika. Nemitengo yakafanana yezvishandiso (Google yakapedza gore rekombuta paboka re1 GPUs kuti uwane yekutanga SHA-110 kudhumhana), iyo nzira nyowani inokutendera iwe kuti uwane SHA-1 mechi yemaviri epokana data seti. Padivi rinoshanda, unogona kugadzirira zvitupa zveTLS zvinotaura madomasi akasiyana, asi ane akafanana SHA-1 hashes. Iyi ficha inobvumira isina kutendeseka certification chiremera kugadzira chitupa chedhijitari siginicha, iyo inogona kushandiswa kubvumidza zvitupa zvemanyepo zvemadomasi. Iyo nyaya inogona zvakare kushandiswa kukanganisa mapuroteni anovimba nekudzivirira kudhumhana, seTLS, SSH, uye IPsec.

Nzira yakarongwa yekutsvaga prefixes yekudhumhana inosanganisira kupatsanura zviverengero kuita nhanho mbiri. Danho rekutanga rinotsvaga mabhuroko ari padhuze nekudhumhana nekuisa zvisina tsarukano cheni inosiyana mune yakagara yakatsanangurwa musiyano wechinangwa. Padanho rechipiri, pamwero wemabhuroko ega ega, maketani anoguma emisiyano anofananidzwa nembiri dzematunhu anotungamira mukukonana, vachishandisa nzira dzechinyakare kudhumhana kusarudza kurwisa.

Kunyangwe chokwadi chekuti mukana wekufungidzira wekurwiswa kweSHA-1 wakaratidzwa kumashure muna 2005, uye mukuita kudhumhana kwekutanga kwaive. kunhongwa muna 2017, SHA-1 ichiri kushandiswa uye yakafukidzwa nemamwe maitiro uye matekinoroji (TLS 1.2, Git, nezvimwewo). Chinangwa chikuru chebasa rakaitwa chaive chekupa imwe nharo inomanikidza yekumisa iko kushandiswa kweSHA-1, kunyanya muzvitupa nemasiginecha edhijitari.

Uyezve, inogona kucherechedzwa chinyorwa migumisiro cryptanalysis ye block ciphers SIMON-32/64, yakagadziridzwa neUS NSA uye yakabvumidzwa seyakajairwa muna 2018 ISO/IEC 29167-21:2018.
Vatsvagiri vakakwanisa kugadzira nzira yekudzoreredza kiyi yakavanzika zvichibva pamaviri maviri anozivikanwa epachena uye ciphertext. Nezviwanikwa zvekombuta zvishoma, kusarudza kiyi kunotora kubva maawa akati wandei kusvika kumazuva akati wandei. Iyo theoretical budiriro mwero wekurwiswa inofungidzirwa pa 0.25, uye inoshanda yeiyo iripo prototype ndeye 0.025.

Source: opennet.ru

Voeg