Far better to use public-key signatures
Far better to use public-key signatures
Posted Dec 20, 2007 19:30 UTC (Thu) by smoogen (subscriber, #97)In reply to: Far better to use public-key signatures by rise
Parent article: The backdooring of SquirrelMail
One has to take into effect that when most times people say that it doesn't increase the work load they are talking about order of magnitude things... and that it doesn't increase the factor if certain factors are true. Finding a match between SHA1 and 'pull out unrelated of my butt' Hash might only extend the time to see it by months or years versus decades... and is not non-trivial.. may only be 'trivial' to the mathmetician who was testing it against a theoretical 10^20 years to find a match.