http://www.security.nnov.ru/advisories/timesync.asp
He just touches the surface, of course, and is only delving into some aspects of one particular implementation - but what we're seeing is that folks are gaining a greater understanding of these types of issues from a systems approach...
Apparently, we aren't talking about simple brute-forcing or birthday attacks, either. Antoine Joux just presented a paper on this subject at Crypto 2004 in Santa Barbara - did anyone attend?
Here's another one on MD5, MD4, HAVAL-128, and RIPEMD:
http://eprint.iacr.org/2004/199/
Parallel SSH - What is that? http://www.theether.org/pssh
No comments:
Post a Comment