A practical demonstration of a collision attack against PGP's 64-bit Long Key IDs, achieved in 3 days on a laptop using birthday attack principles. Two different PGP keypairs were generated that share the same Long Key ID (948F9326DD647C78), exploiting the mathematical reality that 64-bit outputs require only ~2^32 attempts for

3m read timeFrom soatok.blog
Post cover image
Table of contents
Proof of ConceptWhat Is Actually Happening?TL;DR

Sort: