Repository logo

Infoscience

  • English
  • French
Log In
Logo EPFL, École polytechnique fédérale de Lausanne

Infoscience

  • English
  • French
Log In
  1. Home
  2. Academic and Research Output
  3. Conferences, Workshops, Symposiums, and Seminars
  4. Short chosen-prefix collisions for MD5 and the creation of a rogue CA certificate
 
conference paper

Short chosen-prefix collisions for MD5 and the creation of a rogue CA certificate

Stevens, Marc
•
Sotirov, Alexander
•
Appelbaum, Jacob
Show more
2009
Lecture Notes in Computer Science
CRYPTO

We present a refined chosen-prefix collision construction for MD5 that allowed creation of a rogue Certification Authority (CA) certificate, based on a collision with a regular end-user website certificate provided by a commercial CA. Compared to the previous construction from Eurocrypt 2007, this paper describes a more flexible family of differential paths and a new variable birthdaying search space. Combined with a time-memory trade-off, these improvements lead to just three pairs of near-collision blocks to generate the collision, enabling construction of RSA moduli that are sufficiently short to be accepted by current CAs. The entire construction is fast enough to allow for adequate prediction of certificate serial number and validity period: it can be made to require about 249 MD5 compression function calls. Finally, we improve the complexity of identical-prefix collisions for MD5 to about 2 16 MD5 compression function calls and use it to derive a practical single-block chosen-prefix collision construction of which an example is given. © 2009 Springer.

  • Files
  • Details
  • Metrics
Type
conference paper
DOI
10.1007/978-3-642-03356-8_4
Author(s)
Stevens, Marc
Sotirov, Alexander
Appelbaum, Jacob
Lenstra, Arjen K.  
Molnar, David
Osvik, Dag Arne  
De Weger, Benne
Date Issued

2009

Publisher

Springer Verlag

Published in
Lecture Notes in Computer Science
Volume

5677

Start page

55

End page

69

Subjects

Cryptography

•

Terminology

Note

best paper award at Crypto 2009

Editorial or Peer reviewed

REVIEWED

Written at

EPFL

EPFL units
LACAL  
Event nameEvent date
CRYPTO

2009

Available on Infoscience
June 25, 2010
Use this identifier to reference this record
https://infoscience.epfl.ch/handle/20.500.14299/51312
Logo EPFL, École polytechnique fédérale de Lausanne
  • Contact
  • infoscience@epfl.ch

  • Follow us on Facebook
  • Follow us on Instagram
  • Follow us on LinkedIn
  • Follow us on X
  • Follow us on Youtube
AccessibilityLegal noticePrivacy policyCookie settingsEnd User AgreementGet helpFeedback

Infoscience is a service managed and provided by the Library and IT Services of EPFL. © EPFL, tous droits réservés