9fans - fans of the OS Plan 9 from Bell Labs
 help / color / mirror / Atom feed
From: Tim Newsham <newsham@lava.net>
To: Fans of the OS Plan 9 from Bell Labs <9fans@cse.psu.edu>
Subject: [9fans] venti question
Date: Mon, 16 Aug 2004 14:40:11 -1000	[thread overview]
Message-ID: <Pine.BSI.4.58.0408161437100.23447@malasada.lava.net> (raw)
In-Reply-To: <Pine.LNX.4.44.0408121725120.31999-100000@maxroach.lanl.gov>

This "paper" implies feasible attacks against SHA-0:
  http://eprint.iacr.org/2004/199.pdf

and there are (unconfirmed) rumors that the attack has been
successfully extended to SHA-1.

I was wondering what the implications of this would be to venti.
It would seem that it may open the door to malicious corruption
of venti data.  Of the top of my head -- if you could anticipate
some data that will be stored in the near future and have enough
time to calculate a collision for it, you could submit bogus data
with the same hash.  When the data is stored later, it will be
discarded because venti will already think it has the data.

Tim N.


  parent reply	other threads:[~2004-08-17  0:40 UTC|newest]

Thread overview: 15+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2004-08-12 23:27 [9fans] xen port ron minnich
2004-08-12 23:29 ` boyd, rounin
2004-08-12 23:47   ` andrey mirtchovski
2004-08-17  0:40 ` Tim Newsham [this message]
2004-08-17 15:40   ` [9fans] venti question Russ Cox
2009-05-12 13:20 hugo rivera
2009-05-12 15:17 ` Latchesar Ionkov
2009-05-12 15:29   ` hugo rivera
2009-05-12 15:43   ` erik quanstrom
2009-05-12 16:35     ` Steve Simon
2009-05-13  8:51       ` hugo rivera
2009-05-13 11:47         ` erik quanstrom
2009-05-13 12:41           ` hugo rivera
2009-05-13 11:49         ` Steve Simon
2009-05-13 13:34           ` hugo rivera

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=Pine.BSI.4.58.0408161437100.23447@malasada.lava.net \
    --to=newsham@lava.net \
    --cc=9fans@cse.psu.edu \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).