{"type":"rich","version":"1.0","author_name":"npub1trckpcxmceskq4cykxgwxm63n8ugrjrpu5mk83c90e4upsf7d9gqf0f95j","author_url":"https://nostr.ae/npub1trckpcxmceskq4cykxgwxm63n8ugrjrpu5mk83c90e4upsf7d9gqf0f95j","provider_name":"njump","provider_url":"https://nostr.ae","html":"📅 Original date posted:2013-04-01\n📝 Original message:And the moment I hit send I realised it's not necessarily true.\nConceivably, a collision attack might help you craft two commits (one\ngood, one bad) with the same hash.\n\nBut I still maintain what I just posted is true: if someone gets\nmalicious code into the repo, it's going to be by social engineering,\nnot by breaking the cyrpto.\n\nroy\n\n\nOn Mon, Apr 01, 2013 at 11:51:07PM +0100, Roy Badami wrote:\n\u003e The attack Schneier is talking about is a collision attack (i.e. it\n\u003e creates two messages with the same hash, but you don't get to choose\n\u003e either of the messages).  It's not a second preimage attack, which is\n\u003e what you would need to be able to create a message that hashes to the\n\u003e same value of an existing message.\n\u003e \n\u003e (And it neither have anything to do with the birthday paradox, BTW -\n\u003e which relates to the chance of eventually finding two messages that\n\u003e hash to the same value by pure change)\n\u003e \n\u003e If someone gets malicious code into the repo, it's going to be by\n\u003e social engineering, not by breaking the cyrpto.\n\u003e \n\u003e roy\n\u003e \n\u003e On Tue, Apr 02, 2013 at 12:27:51AM +0200, Melvin Carvalho wrote:\n\u003e \u003e On 2 April 2013 00:10, Will \u003cwill at phase.net\u003e wrote:\n\u003e \u003e \n\u003e \u003e \u003e The threat of a SHA1 collision attack to insert a malicious pull request\n\u003e \u003e \u003e are tiny compared with the other threats - e.g. github being compromised,\n\u003e \u003e \u003e one of the core developers' passwords being compromised, one of the core\n\u003e \u003e \u003e developers going rogue, sourceforge (distribution site) being compromised\n\u003e \u003e \u003e etc etc... believe me there's a lot more to worry about than a SHA1\n\u003e \u003e \u003e attack...\n\u003e \u003e \u003e\n\u003e \u003e \u003e Not meaning to scare, just to put things in perspective - this is why we\n\u003e \u003e \u003e all need to peer review each others commits and keep an eye out for\n\u003e \u003e \u003e suspicious commits, leverage the benefits of this project being open source\n\u003e \u003e \u003e and easily peer reviewed.\n\u003e \u003e \u003e\n\u003e \u003e \n\u003e \u003e Very good points, and I think you're absolutely right.\n\u003e \u003e \n\u003e \u003e But just running the numbers, to get the picture, based of scheiner's\n\u003e \u003e statistics:\n\u003e \u003e \n\u003e \u003e http://www.schneier.com/blog/archives/2012/10/when_will_we_se.html\n\u003e \u003e \n\u003e \u003e We're talking about a million terrahashes = 2^60 right?\n\u003e \u003e \n\u003e \u003e With the block chain, you only have a 10 minute window, but with source\n\u003e \u003e code you have a longer time to prepare.\n\u003e \u003e \n\u003e \u003e Couldnt this be done with an ASIC in about a week?\n\u003e \u003e \n\u003e \u003e \n\u003e \u003e \n\u003e \u003e \u003e\n\u003e \u003e \u003e Will\n\u003e \u003e \u003e\n\u003e \u003e \u003e\n\u003e \u003e \u003e On 1 April 2013 23:52, Melvin Carvalho \u003cmelvincarvalho at gmail.com\u003e wrote:\n\u003e \u003e \u003e\n\u003e \u003e \u003e\u003e\n\u003e \u003e \u003e\u003e\n\u003e \u003e \u003e\u003e\n\u003e \u003e \u003e\u003e On 1 April 2013 20:28, Petr Praus \u003cpetr at praus.net\u003e wrote:\n\u003e \u003e \u003e\u003e\n\u003e \u003e \u003e\u003e\u003e An attacker would have to find a collision between two specific pieces\n\u003e \u003e \u003e\u003e\u003e of code - his malicious code and a useful innoculous code that would be\n\u003e \u003e \u003e\u003e\u003e accepted as pull request. This is the second, much harder case in the\n\u003e \u003e \u003e\u003e\u003e birthday problem. When people talk about SHA-1 being broken they actually\n\u003e \u003e \u003e\u003e\u003e mean the first case in the birthday problem - find any two arbitrary values\n\u003e \u003e \u003e\u003e\u003e that hash to the same value. So, no I don't think it's a feasible attack\n\u003e \u003e \u003e\u003e\u003e vector any time soon.\n\u003e \u003e \u003e\u003e\u003e\n\u003e \u003e \u003e\u003e\u003e Besides, with that kind of hashing power, it might be more feasible to\n\u003e \u003e \u003e\u003e\u003e cause problems in the chain by e.g. constantly splitting it.\n\u003e \u003e \u003e\u003e\u003e\n\u003e \u003e \u003e\u003e\n\u003e \u003e \u003e\u003e OK, maybe im being *way* too paranoid here ... but what if someone had\n\u003e \u003e \u003e\u003e access to github, could they replace one file with one they had prepared at\n\u003e \u003e \u003e\u003e some point?\n\u003e \u003e \u003e\u003e\n\u003e \u003e \u003e\u003e\n\u003e \u003e \u003e\u003e\u003e\n\u003e \u003e \u003e\u003e\u003e\n\u003e \u003e \u003e\u003e\u003e On 1 April 2013 03:26, Melvin Carvalho \u003cmelvincarvalho at gmail.com\u003e wrote:\n\u003e \u003e \u003e\u003e\u003e\n\u003e \u003e \u003e\u003e\u003e\u003e  I was just looking at:\n\u003e \u003e \u003e\u003e\u003e\u003e\n\u003e \u003e \u003e\u003e\u003e\u003e https://bitcointalk.org/index.php?topic=4571.0\n\u003e \u003e \u003e\u003e\u003e\u003e\n\u003e \u003e \u003e\u003e\u003e\u003e I'm just curious if there is a possible attack vector here based on the\n\u003e \u003e \u003e\u003e\u003e\u003e fact that git uses the relatively week SHA1\n\u003e \u003e \u003e\u003e\u003e\u003e\n\u003e \u003e \u003e\u003e\u003e\u003e Could a seemingly innocuous pull request generate another file with a\n\u003e \u003e \u003e\u003e\u003e\u003e backdoor/nonce combination that slips under the radar?\n\u003e \u003e \u003e\u003e\u003e\u003e\n\u003e \u003e \u003e\u003e\u003e\u003e Apologies if this has come up before ...\n\u003e \u003e \u003e\u003e\u003e\u003e\n\u003e \u003e \u003e\u003e\u003e\u003e\n\u003e \u003e \u003e\u003e\u003e\u003e ------------------------------------------------------------------------------\n\u003e \u003e \u003e\u003e\u003e\u003e Own the Future-Intel\u0026reg; Level Up Game Demo Contest 2013\n\u003e \u003e \u003e\u003e\u003e\u003e Rise to greatness in Intel's independent game demo contest.\n\u003e \u003e \u003e\u003e\u003e\u003e Compete for recognition, cash, and the chance to get your game\n\u003e \u003e \u003e\u003e\u003e\u003e on Steam. $5K grand prize plus 10 genre and skill prizes.\n\u003e \u003e \u003e\u003e\u003e\u003e Submit your demo by 6/6/13. http://p.sf.net/sfu/intel_levelupd2d\n\u003e \u003e \u003e\u003e\u003e\u003e _______________________________________________\n\u003e \u003e \u003e\u003e\u003e\u003e Bitcoin-development mailing list\n\u003e \u003e \u003e\u003e\u003e\u003e Bitcoin-development at lists.sourceforge.net\n\u003e \u003e \u003e\u003e\u003e\u003e https://lists.sourceforge.net/lists/listinfo/bitcoin-development\n\u003e \u003e \u003e\u003e\u003e\u003e\n\u003e \u003e \u003e\u003e\u003e\u003e\n\u003e \u003e \u003e\u003e\u003e\n\u003e \u003e \u003e\u003e\n\u003e \u003e \u003e\u003e\n\u003e \u003e \u003e\u003e ------------------------------------------------------------------------------\n\u003e \u003e \u003e\u003e Own the Future-Intel\u0026reg; Level Up Game Demo Contest 2013\n\u003e \u003e \u003e\u003e Rise to greatness in Intel's independent game demo contest.\n\u003e \u003e \u003e\u003e Compete for recognition, cash, and the chance to get your game\n\u003e \u003e \u003e\u003e on Steam. $5K grand prize plus 10 genre and skill prizes.\n\u003e \u003e \u003e\u003e Submit your demo by 6/6/13. http://p.sf.net/sfu/intel_levelupd2d\n\u003e \u003e \u003e\u003e _______________________________________________\n\u003e \u003e \u003e\u003e Bitcoin-development mailing list\n\u003e \u003e \u003e\u003e Bitcoin-development at lists.sourceforge.net\n\u003e \u003e \u003e\u003e https://lists.sourceforge.net/lists/listinfo/bitcoin-development\n\u003e \u003e \u003e\u003e\n\u003e \u003e \u003e\u003e\n\u003e \u003e \u003e\n\u003e \n\u003e \u003e ------------------------------------------------------------------------------\n\u003e \u003e Own the Future-Intel\u0026reg; Level Up Game Demo Contest 2013\n\u003e \u003e Rise to greatness in Intel's independent game demo contest.\n\u003e \u003e Compete for recognition, cash, and the chance to get your game \n\u003e \u003e on Steam. $5K grand prize plus 10 genre and skill prizes. \n\u003e \u003e Submit your demo by 6/6/13. http://p.sf.net/sfu/intel_levelupd2d\n\u003e \n\u003e \u003e _______________________________________________\n\u003e \u003e Bitcoin-development mailing list\n\u003e \u003e Bitcoin-development at lists.sourceforge.net\n\u003e \u003e https://lists.sourceforge.net/lists/listinfo/bitcoin-development\n\u003e \n\u003e \n\u003e ------------------------------------------------------------------------------\n\u003e Own the Future-Intel\u0026reg; Level Up Game Demo Contest 2013\n\u003e Rise to greatness in Intel's independent game demo contest.\n\u003e Compete for recognition, cash, and the chance to get your game \n\u003e on Steam. $5K grand prize plus 10 genre and skill prizes. \n\u003e Submit your demo by 6/6/13. http://p.sf.net/sfu/intel_levelupd2d\n\u003e _______________________________________________\n\u003e Bitcoin-development mailing list\n\u003e Bitcoin-development at lists.sourceforge.net\n\u003e https://lists.sourceforge.net/lists/listinfo/bitcoin-development\n\u003e"}
