in reply to Hash Clash on purpose
Though it might be something closer tochomp($f = <>); $input{$f}++;
The problem described is causing the hashing function to work harder to produce the hashed string... degrading performance to O(n * n) time frame. But it assumes the attacker has a quasi direct pipe to the hashing functions input.chomp($f = <>); if ( $input{$f} ) { blah; }
|
|---|
| Replies are listed 'Best First'. | |
|---|---|
|
Re: Re: Hash Clash on purpose
by iburrell (Chaplain) on Jun 02, 2003 at 21:29 UTC | |
by l2kashe (Deacon) on Jun 02, 2003 at 22:38 UTC | |
by iburrell (Chaplain) on Jun 02, 2003 at 22:57 UTC | |
by mr_mischief (Monsignor) on Jun 03, 2003 at 02:52 UTC | |
by Anonymous Monk on Jun 04, 2003 at 08:20 UTC | |
by Anonymous Monk on Jun 02, 2003 at 23:15 UTC | |
by iburrell (Chaplain) on Jun 03, 2003 at 01:03 UTC |