Cryptanalist Discovers New MD5 Attack Variant in Flame

June 7th, 2012

Via: CWI:

Using our forensic tool, we have indeed verified that a chosen-prefix collision attack against MD5 has been used for Flame. More interestingly, the results have shown that not our published chosen-prefix collision attack was used, but an entirely new and unknown variant. Therefore it is not unreasonable to assume that the particular chosen-prefix collision attack variant underlying Flame had already been in development before June 2009. This has led to our conclusion that the design of Flame is partly based on world-class cryptanalysis.

Research Credit: keti

Leave a Reply

You must be logged in to post a comment.