The Cost of Creating Collisions Using SHA-1
casecurity.org
casecurity.org
This is not accurate and I think they confused FPGAs with ASICs. The “FP” in FPGA means “field programmable.” You do need a new design to use an FPGA for SHA-1 instead of SHA-2, but there are probably plenty of SHA-1 implementations out there, and the hardware stays the same.
I'd like to know where the organized crime syndicate budget numbers came from
Maybe it's not worth their money now, but I'm skeptical that having to pony up ~4x the money is going to stop an organized crime syndicate from being in striking range of a collision.
It's already in the range of many mid-sized companies at that price point.
Given a government budget and time-scale, and ignoring sunk costs, I would think a collision attack could already be in a negligible cost range for any well funded sophisticated attacker that has setup shop.
edit: also that opinion post is 2 years old
E.g. the very first certificate my browser trusts is:
TÜRKTRUST Elektronik Sertifika Hizmet Sağlayıcısı
Huh? WTF? Why should I trust a CA owned by the "Turkish Military Force Solidarity Foundation"? [1][1] http://en.wikipedia.org/wiki/Digital_signatures_and_law#Turk...
Ugh. I still see so many sites (quite popular ones, too) using MD5.