Finally a SHA-1 collision. TL;DR: same-prefix collision, don't panic *yet*, but Git better start thinking of SHA-256 and don't trust PDFs.
-
-
Replying to @cytlan @PinoBatch
We're talking about having two valid PNG files with the same SHA-1 hash and a different image (or similar).
1 reply 0 retweets 0 likes -
Today's collision attack requires that both files be A+X0+B and A+X1+B and you don't control X0 or X1.
1 reply 0 retweets 0 likes
And if CRC(A+X0) != CRC(A+X1) then I believe there is no B for which CRC(A+X0+B) == CRC(A+X1+B).
8:20 AM - 23 Feb 2017
0 replies
0 retweets
2 likes
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.