Digital Signatures - The Ultimate Computing Safeguard Has Been Compromised
What that Could Mean for Your Online Privacy and Security
Using his laptop computer and a PlayStation 3 console, Marc Stevens, a PH.D Student of Cryptology at Amsterdam, the Netherlands, Centrum Wiskunde and Informatica, broke the MD5 algorithm, enabling him to create digital documents with the exact same digital signatures. According to Stevens, the multiple computing cores of the PlayStation performed like a cluster of 40 PCs making it possible to compromise the cryptographic algorithm calculations in less than a day to create the digital forgeries. In actuality, any two computational file algorithm can be broken, however, it generally it takes vast amount of time and computer processing power. Stevens developed a system that works with resources that can be found in most homes in America.
MD5 algorithm checks a digital document file's length in order to establish its digital signature. Stevens's system adds junk data to each file to make them the same size. Next it calculates the difference between the two files fingerprints and continues to add data to both files, this time calculated to reduce the differences between their finger prints. This process is applied over and over again until it finally yields identical digital fingerprints for both documents.
If a harmless digitally compromised document were to get listed in a commonly used library, malicious files sharing of its altered digital fingerprinted counterpart could circulate through countless computer systems unnoticed. Sensitive online documents such as digital protection certificates that identify banking and personal security information sites, nearly all password encryption, and even access to your own home personal computer could easily be exposed and tampered with. This ability to digitally alter document and certify their identity and origin to mimic officially recognized and accepted documents could result in some very serious problems if placed in the wrong hands. Digital forensics would almost be rendered helpless. Thankfully stronger better cryptographic hashing algorithms are being developed.
Resource: Sharing Fingerprints - Technology Review - March/April 2009
Published by Gerald McLeod
Living in Hawaii over 25 years. 3 adult children who left this pacific paradise for the Pacific Northwest. After years of insurance investigation reports writing is a habit. AC let s me choose what I like... View profile
- Online Security: Protect Your Personal Information and Your MoneyE-commerce has become big business these days for many online entrepreneurs, and the importance of online security for consumers has become a huge concern. Protect yourself by following a few simple rules.
- 6 Big Online Privacy ConcernsThis article examines the problem with online privacy and 6 six concerns that all users should have.
- To Know and Understand Consumers Concerns in Online ShoppingConsumers have different reasons and ways of accessing online stores to shop for personal items. Both consumers and store owners must be very aware of the cost-benefit factor for success. Online Security and Privacy a...
- InfoCards: Microsoft Takes on the World of Online Security and ID-theftThe "InfoCards" approach wins by NOT creating a software. It is a metasystem, a protocol that ensures security through some rules and regulations it has developed.
How Banks Fail to Provide Effective Online SecurityA Texas bank is suing one of its customers who was hit by an $800,000 online bank theft that could determine who is to be held responsible for protecting their online accounts f...
- Understanding Digital Signatures
- Digital Signatures & E-Commerce Legalities
- Digital Certificates for Personal E-mail Security
- SHA: The Birth Mother of Secure Hashing Standards
- Cryptography and Hashes
- 5 Things You Should Know About Online Privacy
- Photoshop Tutorial: How to Create Your Digital Signature
