DragonFly users List (threaded) for 2005-09
Re: [OT] Micro$oft versus security

From: "Simon 'corecode' Schubert" <corecode@xxxxxxxxxxxx>
Date: Thu, 22 Sep 2005 18:00:18 +0200

walt wrote:
Nevertheless they have been broken recently (about one year) and for MD5 for example single bits can be changed...
Okay, that's why I asked -- I didn't know that.  But why take a year
to break a secure hash when you can use a buffer overrun to gain
access to ten thousand Windows machines in a few minutes ;o)

Oh, maybe I didn't write this clear enough: the vulnerability was found about one year ago. Adjusting the data so the MD5 sum stays the same is a matter of a few cycles.


