<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Darknet - The Darkside &#187; cryptanalysis</title>
	<atom:link href="http://www.darknet.org.uk/tag/cryptanalysis/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.darknet.org.uk</link>
	<description>Ethical Hacking, Penetration Testing &#38; Computer Security</description>
	<lastBuildDate>Tue, 07 Feb 2012 18:34:17 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Mediggo &#8211; Tool To Detect Weak Or Insecure Cryptosystems Using Generic Cryptanalysis Techniques</title>
		<link>http://www.darknet.org.uk/2011/08/mediggo-tool-to-detect-weak-or-insecure-cryptosystems-using-generic-cryptanalysis-techniques/</link>
		<comments>http://www.darknet.org.uk/2011/08/mediggo-tool-to-detect-weak-or-insecure-cryptosystems-using-generic-cryptanalysis-techniques/#comments</comments>
		<pubDate>Tue, 16 Aug 2011 11:02:24 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Cryptography]]></category>
		<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[cryptanalysis]]></category>
		<category><![CDATA[cryptanalysis tool]]></category>
		<category><![CDATA[crypto analysis]]></category>
		<category><![CDATA[Cryptology]]></category>
		<category><![CDATA[cryptosystem analysis]]></category>
		<category><![CDATA[hacking cryptography]]></category>
		<category><![CDATA[insecure cryptosystems]]></category>
		<category><![CDATA[mediggo]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=3163</guid>
		<description><![CDATA[Mediggo is an opensource cryptanalysis library. This library implements generic cryptanalysis techniques to detect weak or insecure cryptosystems or learn and practice with cryptanalysis. This library is open source (LGPL licence) and written in C programming language. Samples and test cases are provided with each techniques: the solution is not always given to make people [...]]]></description>
			<content:encoded><![CDATA[<p>Mediggo is an opensource cryptanalysis library. This library implements generic cryptanalysis techniques to detect weak or insecure cryptosystems or learn and practice with cryptanalysis.</p>
<p>This library is open source (LGPL licence) and written in C programming language. Samples and test cases are provided with each techniques:</p>
<ul>
<li>    the solution is not always given to make people practice</li>
<li>    the solution can always be obtained by contacting the development team </li>
</ul>
<p><strong>Current Features</strong></p>
<ul>
<li>Detection and cryptanalysis of weakly implemented or trapped systems</li>
</ul>
<p><strong>Future Features</strong></p>
<ul>
<li>Automatic detection of statistical biases in cryptographic algorithms.</li>
<li>Specific cryptanalysis tools.</li>
</ul>
<p>You can download Mediggo here:</p>
<p><a href="http://mediggo.googlecode.com/files/megiddo-0.4.0.tar.gz">megiddo-0.4.0.tar.gz</a></p>
<p>Or read more <a href="http://code.google.com/p/mediggo/">here</a>.</p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=Mediggo+%E2%80%93+Tool+To+Detect+Weak+Or+Insecure+Cryptosystems+Using+Generic+Cryptanalysis+Techniques+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D3163+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2011/08/mediggo-tool-to-detect-weak-or-insecure-cryptosystems-using-generic-cryptanalysis-techniques/&amp;t=Mediggo+%E2%80%93+Tool+To+Detect+Weak+Or+Insecure+Cryptosystems+Using+Generic+Cryptanalysis+Techniques" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2011/08/mediggo-tool-to-detect-weak-or-insecure-cryptosystems-using-generic-cryptanalysis-techniques/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2011/08/mediggo-tool-to-detect-weak-or-insecure-cryptosystems-using-generic-cryptanalysis-techniques/&amp;title=Mediggo+%E2%80%93+Tool+To+Detect+Weak+Or+Insecure+Cryptosystems+Using+Generic+Cryptanalysis+Techniques" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2011/08/mediggo-tool-to-detect-weak-or-insecure-cryptosystems-using-generic-cryptanalysis-techniques/&amp;title=Mediggo+%E2%80%93+Tool+To+Detect+Weak+Or+Insecure+Cryptosystems+Using+Generic+Cryptanalysis+Techniques" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2011/08/mediggo-tool-to-detect-weak-or-insecure-cryptosystems-using-generic-cryptanalysis-techniques/&amp;title=Mediggo+%E2%80%93+Tool+To+Detect+Weak+Or+Insecure+Cryptosystems+Using+Generic+Cryptanalysis+Techniques" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2011/08/mediggo-tool-to-detect-weak-or-insecure-cryptosystems-using-generic-cryptanalysis-techniques/&amp;title=Mediggo+%E2%80%93+Tool+To+Detect+Weak+Or+Insecure+Cryptosystems+Using+Generic+Cryptanalysis+Techniques" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2011%2F08%2Fmediggo-tool-to-detect-weak-or-insecure-cryptosystems-using-generic-cryptanalysis-techniques%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2011/08/mediggo-tool-to-detect-weak-or-insecure-cryptosystems-using-generic-cryptanalysis-techniques/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>SHA-1 Cracked &#8211; Old News, But People Still Talk</title>
		<link>http://www.darknet.org.uk/2007/03/sha-1-cracked-old-news-but-people-still-talk/</link>
		<comments>http://www.darknet.org.uk/2007/03/sha-1-cracked-old-news-but-people-still-talk/#comments</comments>
		<pubDate>Fri, 02 Mar 2007 09:26:19 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Cryptography]]></category>
		<category><![CDATA[General Hacking]]></category>
		<category><![CDATA[china]]></category>
		<category><![CDATA[chinese-hackers]]></category>
		<category><![CDATA[chinese-scientists]]></category>
		<category><![CDATA[cryptanalysis]]></category>
		<category><![CDATA[encryption]]></category>
		<category><![CDATA[hashing]]></category>
		<category><![CDATA[hashing-algorith]]></category>
		<category><![CDATA[md5]]></category>
		<category><![CDATA[nist]]></category>
		<category><![CDATA[NSA]]></category>
		<category><![CDATA[sha-1]]></category>
		<category><![CDATA[sha1]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/2007/03/sha-1-cracked-old-news-but-people-still-talk/</guid>
		<description><![CDATA[A paper about cracking SHA-1 originally surfaced in 2005, from a fairly reputable scientific source in China, it was widely publicised nor talked about much. But then recently, just last month China managed to make a wave out of it, almost 2 years after the initial &#8216;report&#8217;. It was even Slashdotted on January 20th 2007, [...]]]></description>
			<content:encoded><![CDATA[<p></p>
<p>A paper about cracking SHA-1 originally surfaced in 2005, from a fairly reputable scientific source in China, it was widely publicised nor talked about much.</p>
<p>But then recently, just last month China managed to make a wave out of it, almost 2 years after the initial &#8216;report&#8217;.</p>
<p>It was even <a href="http://it.slashdot.org/article.pl?sid=07/01/20/1936257">Slashdotted on January 20th 2007</a>, the article states the following:</p>
<blockquote><p>These two main algorithms are currently the crucial technology that electronic signatures and many other password securities use throughout the international community. They are widely used in banking, securities, and e-commerce. SHA-1 has been recognized as the cornerstone for modern Internet security. According to the article, in the early stages of Wang&#8217;s research, there were other data encryption researchers who tried to crack it. However, none of them succeeded. This is why in 15 years Hash research had become the domain of hopeless research in many scientists&#8217; minds.</p></blockquote>
<p>Source: <a href="http://en.epochtimes.com/news/7-1-11/50336.html">Epoch Times</a></p>
<p>Bruce Schneier wrote about this in 2005, February in fact, almost 2 full years ago.</p>
<p><a href="http://www.schneier.com/blog/archives/2005/02/sha1_broken.html">SHA-1 Broken</a></p>
<p><a href="http://www.schneier.com/blog/archives/2005/02/cryptanalysis_o.html">Cryptanalysis of SHA-1</a></p>
<p>It&#8217;s not a major thing though and it&#8217;s far beyond anything most criminals could use to thwart national security&#8230;or even the security of things based on SHA-1 like OpenSSH.</p>
<p></p>
<p>There are however plenty of replacement algorithms if you are paranoid such as SHA-224, SHA-256, SHA-384, and SHA-512.</p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=SHA-1+Cracked+%E2%80%93+Old+News%2C+But+People+Still+Talk+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D466+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2007/03/sha-1-cracked-old-news-but-people-still-talk/&amp;t=SHA-1+Cracked+%E2%80%93+Old+News%2C+But+People+Still+Talk" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2007/03/sha-1-cracked-old-news-but-people-still-talk/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2007/03/sha-1-cracked-old-news-but-people-still-talk/&amp;title=SHA-1+Cracked+%E2%80%93+Old+News%2C+But+People+Still+Talk" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2007/03/sha-1-cracked-old-news-but-people-still-talk/&amp;title=SHA-1+Cracked+%E2%80%93+Old+News%2C+But+People+Still+Talk" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2007/03/sha-1-cracked-old-news-but-people-still-talk/&amp;title=SHA-1+Cracked+%E2%80%93+Old+News%2C+But+People+Still+Talk" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2007/03/sha-1-cracked-old-news-but-people-still-talk/&amp;title=SHA-1+Cracked+%E2%80%93+Old+News%2C+But+People+Still+Talk" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2007%2F03%2Fsha-1-cracked-old-news-but-people-still-talk%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2007/03/sha-1-cracked-old-news-but-people-still-talk/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

