-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Hi "Suspekt",

thanks for the feedback.

the cryptographic experts warn strongly about using SHA1.
See for example Minute 31:30 of the following talk (in German):
 
http://media.ccc.de/browse/congress/2013/30C3_-_5337_-_de_-_saal_2_-_201312271715_-_kryptographie_nach_snowden_-_ruedi.html

The essence is "SHA1 is broken".
See also by the same author
 http://www.cryptolabs.org/hash/WeisCccDsHash05.html
The author offered the following bet in 2005(!):
 I would prefer to bet for Britney Spears being a virgin
 over the safety of SHA1
;-)

Without being an expert, that's seriously enough
strong warnings by experts I trust.

Best
 Nico

Am 09.06.2014 10:37, Suspekt schrieb/wrote:
> Hi Nicolai,
> 
> 
> Am 08.06.2014 18:21, schrieb Nicolai Josuttis:
>> Hi,
>> 
>> at http://vimeo.com/channels/ndc2014/97501375 you can find my
>> talk last week (June 5, 14)
> Hi Nicolai, some thoughts on you talk. First things first: I
> watched the video, liked it and it was really interesting. I
> believe at ~57:50 min you are a bit too harsh with SHA1. If I
> understand the SHA1 problems correct, then SHA1 has to be 
> considered cryptographically broken, but there is no reason to
> panic. That is because the attacks are rather theoretical than
> practical for now. Nevertheless we should move away from SHA1 so
> your recommendation to use SHA512 is reasonable I think.
> 
> _______________________________________________ enigmail-users
> mailing list [email protected] 
> https://admin.hostpoint.ch/mailman/listinfo/enigmail-users_enigmail.net
>
> 
> 


- -- 
Nicolai M. Josuttis
www.josuttis.de
mailto:[email protected]

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.22 (MingW32)
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=L0G3
-----END PGP SIGNATURE-----

_______________________________________________
enigmail-users mailing list
[email protected]
https://admin.hostpoint.ch/mailman/listinfo/enigmail-users_enigmail.net

Reply via email to