So many people are getting the SHA1 story wrong. With the collision that Google released, *anyone* can create colliding PDFs for *free*.
You can use an arbitrary tail after the first 320 bytes but it has to be the *same* on both files for the hashes to match.
-
-
The trick is that you can make that same tail contain two different images which are selected based on the collision blocks.
-
right, ok, so you have to engineer the tail just right, given you know where both collisions will direct. Thank you!
End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.