My guess: 1. Take some hash value; 2. Add chunk that is not displayed to find a collision.
-
-
-
they created images for each digit that all collide, made a file and took MD5, then swapped out the digits
-
That doesn't sound right. Is this confirmed?
-
Second, swap out chunks with same hash, and the overall hash will change
-
once you have a collision swapping out mungable content is possible: https://alf.nu/SHA1
-
Interesting. I didn't know that.
-
note: not the same as a second preimage attack
End of conversation
New conversation -
-
-
pretty much my reaction, at first I wasn't impressed, but then I thought about it... whaaatt
End of conversation
New conversation -
-
@__spq__ made the magic happen:https://twitter.com/__spq__/status/838583044260904960 …Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
So what I'm seeing here is "how weak is MD5? This weak."
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
WHAT MANNER OF SORCERY IS THIS?! They've made the MD5 hash dance to their own tune.
-
someone, SOMEWHERE, has altered it enough that it clicked back to the original MD5. Wow.
End of conversation
New conversation -
-
-
and? I'm supposed to be impr... wait a second... how... thafuck...
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
@tianon@chrisczub who are you who can summon fire without flint or tinder?pic.twitter.com/fi9b7bGoz9Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
It's an older checksum, but it checks out.
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
I don't know what this is but I know what it reminds me ofpic.twitter.com/CE92dsshxd
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.