[cabfpub] SHA-1 identical prefix collisions
philliph at comodo.com
Sat Oct 10 18:10:17 MST 2015
Just a heads up that this is about to hit the wires and it is a public holiday on Monday in many parts of the US.
It really shouldn’t be cause for anyone to be alarmed. These attacks do not allow someone to forge a certificate or break TLS. Any CA that is following the guidelines on incorporating randomness will not be vulnerable even if the more powerful collision attacks are achieved.
This was anticipated and the phase out process is already in place.
-------------- next part --------------
An HTML attachment was scrubbed...
More information about the Public