[Novalug] MD5 Sums Not Foolproof / Squirel Mail Compromise

RogerB rogerb at bronord.com
Mon Jan 14 10:44:23 EST 2008


There has been some reference here to the use of MD5 sums to ensure purity
of files. In the context of discussion of compromise of source for Sq.
Mail,
    http://lwn.net/Articles/262090/
a note also appears relating to cryptographic hash function MD5 having been
show not to be collision resistant.
    http://www.win.tue.nl/hashclash/SoftIntCodeSign/

-- 
Roger Broseus
    email: RogerB at bronord.com
    web: www.bronord.com




More information about the Novalug mailing list