-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Hi "Suspekt",
thanks for the feedback. the cryptographic experts warn strongly about using SHA1. See for example Minute 31:30 of the following talk (in German): http://media.ccc.de/browse/congress/2013/30C3_-_5337_-_de_-_saal_2_-_201312271715_-_kryptographie_nach_snowden_-_ruedi.html The essence is "SHA1 is broken". See also by the same author http://www.cryptolabs.org/hash/WeisCccDsHash05.html The author offered the following bet in 2005(!): I would prefer to bet for Britney Spears being a virgin over the safety of SHA1 ;-) Without being an expert, that's seriously enough strong warnings by experts I trust. Best Nico Am 09.06.2014 10:37, Suspekt schrieb/wrote: > Hi Nicolai, > > > Am 08.06.2014 18:21, schrieb Nicolai Josuttis: >> Hi, >> >> at http://vimeo.com/channels/ndc2014/97501375 you can find my >> talk last week (June 5, 14) > Hi Nicolai, some thoughts on you talk. First things first: I > watched the video, liked it and it was really interesting. I > believe at ~57:50 min you are a bit too harsh with SHA1. If I > understand the SHA1 problems correct, then SHA1 has to be > considered cryptographically broken, but there is no reason to > panic. That is because the attacks are rather theoretical than > practical for now. Nevertheless we should move away from SHA1 so > your recommendation to use SHA512 is reasonable I think. > > _______________________________________________ enigmail-users > mailing list [email protected] > https://admin.hostpoint.ch/mailman/listinfo/enigmail-users_enigmail.net > > > - -- Nicolai M. Josuttis www.josuttis.de mailto:[email protected] -----BEGIN PGP SIGNATURE----- Version: GnuPG v2.0.22 (MingW32) iQIcBAEBCgAGBQJTlYoFAAoJEBwWpwr5LSj1X3kP/21f7kWlUOMwGUx4z2afbls8 I1Riup//zkuYlHzA1vunL59VWOAT0uEhxQDEILtuW20D3IxbaeOBIlAO4CP8q5wl oz80A6n2cD8p+sIBFPGpoy5nvJQio5inNGAsPPRclkeS+00NRMXxQqsJOvhrh18t 1oLZPOId/7f1fuUHjJhvhLjNFKK3kD96ns4oXmcYLClvGHbM+lQ0fgn9WkOZj2WZ uIRtgcWN43a0i54hqiNxjUw67oe+plKzIMkn9L1gH80g5FNOa8sR56h4DmH1u2Km fnQPHCg8sVb7Gxi7M3TPyHtfpNRib7zw+QiTKsm+Cb6Zw+m9Eroau/TSDVryXPnK 8wohrgk0kt62envP7bPrdFZjj9V+632UniUl1k1Sa9O+1VpafknkixbIrSBRyM0T S5DVCylYNMzEZHpE/LJHMUA2YoncymvmNSffpCyesXlZf7sVJv+DAFmATZYUzgzU vZxJC35qte1sOrNBeII5QeRZm6Zrz+6qjCTj3owN8bXzgmUozJ/A8jcOB8c3sx0C Iea8cG/1n6SSLeMqAOGBE3prUckEsoUhJOt+cieZn1WPvVtzN1voDVyOE2MhOKyd at4yZKjlaZFN+qas/sH8Ol/HeqA2xgo8oktAKvhD9FX5E9JaVBoTf9gl6Xk5Aq+3 NHXJmGIzcTnlNNBfM0Hz =L0G3 -----END PGP SIGNATURE----- _______________________________________________ enigmail-users mailing list [email protected] https://admin.hostpoint.ch/mailman/listinfo/enigmail-users_enigmail.net
