http://www.security.nnov.ru/advisories/timesync.asp
He just touches the surface, of course, and is only delving into  some aspects of one particular implementation - but what we're seeing  is  that folks are gaining  a greater understanding of these types of  issues from a systems approach...
Apparently, we aren't talking about simple brute-forcing or  birthday attacks, either. Antoine Joux  just presented a paper on this subject at Crypto 2004 in Santa Barbara - did  anyone attend?
Here's another one on MD5, MD4, HAVAL-128, and  RIPEMD:
 http://eprint.iacr.org/2004/199/
Parallel SSH - What is  that?  http://www.theether.org/pssh 
 
 
No comments:
Post a Comment