[ back to Tom 7 Radar ]

p
e
r
s
o
n
a
l
Real MD5 collision (17 Aug 2004 at 20:51)
Here is an example collision for the real, off-the-shell MD5 algorithm. You can verify for yourselves at home!

C:\tmp> sha1sum x1 x2 a34473cf767c6108a5751a20971f1fdfba97690a x1 4283dd2d70af1ad3c2d5fdc917330bf502035658 x2

C:\tmp> md5sum x1 x2 79054025255fb1a26e4bc422aef54eb4 x1 79054025255fb1a26e4bc422aef54eb4 x2

C:\tmp> hexdump x1 0000000 31d1 02dd e6c5 c4ee 3d69 069a af98 5cf9 0000010 ca2f 87b5 4612 ab7e 0440 3e58 fbb8 897f 0000020 ad55 0634 f409 02b3 e483 8388 7125 5a41 0000030 5108 e825 cdf7 9fc9 1dd9 f2bd 3780 5b3c 0000040 82d8 313e 3456 5b8f 6dae d4ac c936 c619 0000050 53dd b4e2 da87 fd03 3902 0663 48d2 a0cd 0000060 9fe9 4233 570f e87e 54ce 70b6 a880 1e0d 0000070 98c6 bc21 a8b6 9383 f996 2b65 f76f 702a

C:\tmp> hexdump x2 0000000 31d1 02dd e6c5 c4ee 3d69 069a af98 5cf9 0000010 ca2f 07b5 4612 ab7e 0440 3e58 fbb8 897f 0000020 ad55 0634 f409 02b3 e483 8388 f125 5a41 0000030 5108 e825 cdf7 9fc9 1dd9 72bd 3780 5b3c 0000040 82d8 313e 3456 5b8f 6dae d4ac c936 c619 0000050 53dd 34e2 da87 fd03 3902 0663 48d2 a0cd 0000060 9fe9 4233 570f e87e 54ce 70b6 2880 1e0d 0000070 98c6 bc21 a8b6 9383 f996 ab65 f76f 702a


(Webcast tonight at 10pm EST)
c
o
m
m
e
n
t
Tom 7 (h-67-101-136-200.phlapafg.dynamic.covad.net) – 08.17.04 22:50:34
It seems that SHA-1 is safe for now. The collisions are only for a reduced-round variant.
p
o
s
t

a

c
o
m
m
e
n
t
[ Tom 7 Radar  •  Tom 7 on Google+  •  on Twitter  •  on Facebook ]