It gets worse...

Simo Sorce idra at samba.org
Fri Aug 20 19:30:35 GMT 2004


On Fri, 2004-08-20 at 19:30, Jeremy Allison wrote:
> I don't know if anyone here follows sci.crypt, but it looks
> like a generic method of finding MD4 collisions has been
> discovered. No published details yet.

> "* Weng, Fang, Lai, and Yu have what appears to be a general method for
>   finding collisions in MD4, MD5, HAVAL-128, and RIPEMD. They
>   haven't published any details."
> 
> This could be very bad for NTLM auth.....

Have you seen this ?

MD4,MD5,HAVAL-128,RPEMD:
http://eprint.iacr.org/2004/199.pdf

Simo.
-- 
Simo Sorce    -  idra at samba.org
Samba Team    -  http://www.samba.org
Italian Site  -  http://samba.xsec.it



More information about the samba-technical mailing list