We have computed the very first chosen-prefix collision for SHA-1. To put it in another way: all attacks that are practical on MD5 are now also practical on SHA-1.
We have reduced the cost of a collision attack from 2^64.7 to 2^61.2, and the cost of a chosen-prefix collision attack from 2^67.1 to 2^63.4.
Demo: The legacy branch of GnuPG (version 1.4) is vulnerable. We have created two PGP keys with different UserIDs and colliding certificates.
Visualising the amount of microplastic we eat https://graphics.reuters.com/ENVIRONMENT-PLASTIC/0100B4TF2MQ/index.html
#libsigrok 0.5.2 is released!
Roughly 40 or so additional devices (or whole device series) supported, improved USB HID support via HIDAPI, Bluetooth/BLE support (Linux-only for now, via BlueZ), and tons of improvements and bugfixes.
#fossmendations wanted! I'm looking for video editing software for Linux. Does anyone have experience with this?
"Zuckerberg won't speak to the Guardian, so they built a bot trained on hundreds of thousands of his words and interviewed that instead. The result is golden." https://www.theguardian.com/technology/2019/dec/22/zuckerbot-mark-zuckerberg-facebook-botnik
#libsigrok now supports the MASTECH MS6514 2-channel, USB-based thermometer.
It supports K,J,T,E,R,S,N thermocouple types.
Full teardown and protocol docs available in the wiki.
#libsigrokdecode 0.5.3 is released!
New decoders: lin, x2444m, ds2408, cc1101, enc28j60, pca9571, seven_segment, amulet_ascii, tdm_audio, signature, nes_gamepad, flexray, ir_rc6, ieee488, hdcp.
Total PDs supported in this release: 109.
The sale of the .ORG registry to Ethos Capital would erode the safeguards nonprofits and NGOs have against arbitrary censorship and price gouging. Sign on to the petition to #SaveDotOrg. https://www.eff.org/deeplinks/2019/12/we-need-save-org-arbitrary-censorship-halting-private-equity-buy-out
Do not use the Android clipboard for passwords, logins, card numbers, or any kind of sensitive data.
With Android, the clipboard can be read anytime by any app. No permission needed. And the app can then send your data to someone else. If you want to see this, fetch the Clip Stack app from Fdroid, it shows you the clipboard history, and lets you access previous content. #android
How to fight back against Google AMP as a web user and a web developer https://markosaric.com/google-amp/
Nice blog post on .gitignore files by Julien Danjou.
#libsigrokdecode now supports the seven_segment protocol decoder.
Fosstodon is an English speaking Mastodon instance that is open to anyone who is interested in technology; particularly free & open source software.