Skip to content
Advertisement

Recent advances push Big Tech closer to the Q-Day danger zone

Here's which players are winning the race to transition to post-quantum crypto.

schedule 11:00 visibility 70 views
Recent advances push Big Tech closer to the Q-Day danger zone
Source: Ars Technica

Sometime around 2010, sophisticated malware known as Flame hijacked the mechanism that Microsoft used to distribute updates to millions of Windows computers around the world. The malware—reportedly jointly developed by the US and Israel—pushed a malicious update throughout an infected network belonging to the Iranian government.

The lynchpin of the "collision" attack was an exploit of MD5, a cryptographic hash function Microsoft was using to authenticate digital certificates. By minting a cryptographically perfect digital signature based on MD5, the attackers forged a certificate that authenticated their malicious update server. Had the attack been used more broadly, it would have had catastrophic consequences worldwide.

Getting uncomfortably close to the danger zone

The event, which came to light in 2012, now serves as a cautionary tale for cryptography engineers as they contemplate the downfall of two crucial cryptography algorithms used everywhere. Since 2004, MD5 has been known to be vulnerable to "collisions," a fatal flaw that allows adversaries to generate two distinct inputs that produce identical outputs.

Read full article

Comments

newspaper

Originally published at

Ars Technica

open_in_new Read Full Article

Related Articles

Why isn’t the Trump phone made in the USA?
Crypto

Why isn’t the Trump phone made in the USA?

Where's the Trump phone? We're going to keep talking about it every week. We've reached out, as usual, to ask about the Trump phone's whereabouts. This week, I'm investigating where it might have been built - and why it definitely wasn't the US...

The Verge
Hertl caps rally in third as Knights swipe Game 1
Crypto

Hertl caps rally in third as Knights swipe Game 1

Tomas Hertl scored 16:36 into the third period, his fourth goal of the postseason, and the Vegas Golden Knights overcame an early deficit to defeat the Carolina Hurricanes 5-4 in Game 1 of the Stanley Cup Final on Tuesday night at Lenovo Center.

ESPN

Read More