MD5's a hash function, not a block encryption algorithm.
MD5's been effectively broken for some time - it only takes a couple of minutes to generate a collision these days. It's no longer considered suitable for security-sensitive implementations.
kiwibiker is full of love, an disrespect.
- mikey
yeah....i know mate......but for the sake of discussion I didn't see the point in splitting hairs - for the lay man, md5 can be considered encryption - it is after all, altering the original data to disguise it's content which is the fundamental concept behind any encryption
and it is standard practice to include a salt when using md5 these days - "if passwords are combined with a salt before the MD5 digest is generated, rainbow tables become much less useful"
perhaps if we were talking about a WIS for a bank, a salt + md5 implementation would not be ideal but for this site I would suggest it's quite sufficient
F M S
That prevents dictionary attacks to recover the original password (for whatever that'd be worth) but does nothing to reduce MD5's vulnerability to collisions. Salting is a valid technique to guard against exploitation of weak passwords when using an unbroken hash algorithm.
In other words, if you store passwords as MD5 hashes, salt or no salt, and I get hold of one of those hashes, I can quickly come up with another password that generates the same hash value, and then happily log on to the account in question.
Which obviates the purpose of storing passwords as hashes in the first place.
Anyway, I drew the block/hash distinction because folk were speaking of MD5 being used to encrypt messages, which wouldn't be possible. Hash functions are used to identify, not to encipher.
![]()
kiwibiker is full of love, an disrespect.
- mikey
How about quantum cryptography?![]()
It is preferential to refrain from the utilisation of grandiose verbiage in the circumstance that your intellectualisation can be expressed using comparatively simplistic lexicological entities. (...such as the word fuck.)
Remember your humanity, and forget the rest. - Joseph Rotblat
HggtuGY55.mk.kkhg*goto YHk58
They shall not grow old as we that are left grow old.
Age shall not weary them nor the years condemn.
At the going down of the sun and in the evening,
we will remember them
0110011101100101011001010110101101110011
Arrrgh,Nerds, begone from this world
you have been good slaves to mankind, but time you all took a hike.
(actually, I'm just jealous that it's all above my feeble ability to understand)
Signature needed. Apply within.
There are currently 1 users browsing this thread. (0 members and 1 guests)
Bookmarks