<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
		>
<channel>
	<title>Comments on: Playing With Authenticode and MD5 Collisions</title>
	<atom:link href="http://blog.didierstevens.com/2009/01/17/playing-with-authenticode-and-md5-collisions/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.didierstevens.com/2009/01/17/playing-with-authenticode-and-md5-collisions/</link>
	<description>(blog 'DidierStevens)</description>
	<lastBuildDate>Fri, 12 Mar 2010 08:07:51 +0000</lastBuildDate>
	<generator>http://wordpress.com/</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: David</title>
		<link>http://blog.didierstevens.com/2009/01/17/playing-with-authenticode-and-md5-collisions/#comment-37727</link>
		<dc:creator>David</dc:creator>
		<pubDate>Sat, 20 Feb 2010 10:20:12 +0000</pubDate>
		<guid isPermaLink="false">http://blog.didierstevens.com/?p=1156#comment-37727</guid>
		<description>Hi guys,
Great post by the day!
For some of you looking for an online encoder, check this &lt;a href=&quot;http://www.stringfunction.com/md5-hash.html&quot; rel=&quot;nofollow&quot;&gt;online md5 converter&lt;/a&gt;
Pretty Cool!
David</description>
		<content:encoded><![CDATA[<p>Hi guys,<br />
Great post by the day!<br />
For some of you looking for an online encoder, check this <a href="http://www.stringfunction.com/md5-hash.html" rel="nofollow">online md5 converter</a><br />
Pretty Cool!<br />
David</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: 3medya Blog &#187; Blog Archive &#187; MD5 Collision Demo</title>
		<link>http://blog.didierstevens.com/2009/01/17/playing-with-authenticode-and-md5-collisions/#comment-36060</link>
		<dc:creator>3medya Blog &#187; Blog Archive &#187; MD5 Collision Demo</dc:creator>
		<pubDate>Mon, 02 Nov 2009 10:10:45 +0000</pubDate>
		<guid isPermaLink="false">http://blog.didierstevens.com/?p=1156#comment-36060</guid>
		<description>[...] Stevens used the evilize program (below) to create two different programs with the same Authenticode digital signature. Authenticode is Microsoft&#8217;s code signing mechanism, and although it uses SHA1 by default, it [...]</description>
		<content:encoded><![CDATA[<p>[...] Stevens used the evilize program (below) to create two different programs with the same Authenticode digital signature. Authenticode is Microsoft&#8217;s code signing mechanism, and although it uses SHA1 by default, it [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Criza algoritmilor de criptare? &#171; 0&#215;30 0&#215;20 0&#215;61 0&#215;6e 0&#215;64 0&#215;20 0&#215;31</title>
		<link>http://blog.didierstevens.com/2009/01/17/playing-with-authenticode-and-md5-collisions/#comment-34166</link>
		<dc:creator>Criza algoritmilor de criptare? &#171; 0&#215;30 0&#215;20 0&#215;61 0&#215;6e 0&#215;64 0&#215;20 0&#215;31</dc:creator>
		<pubDate>Sat, 31 Jan 2009 09:34:41 +0000</pubDate>
		<guid isPermaLink="false">http://blog.didierstevens.com/?p=1156#comment-34166</guid>
		<description>[...] asta nu a fost tot. Didier Stevens s-a gandit sa treaca la nivelul urmator. Asa ca s-a folosit de scula celor de la Microsoft (special [...]</description>
		<content:encoded><![CDATA[<p>[...] asta nu a fost tot. Didier Stevens s-a gandit sa treaca la nivelul urmator. Asa ca s-a folosit de scula celor de la Microsoft (special [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: SecurityGuy.org &#187; Blog Archive &#187; Playing With Authenticode and MD5 Collisions - The IT Security Blog</title>
		<link>http://blog.didierstevens.com/2009/01/17/playing-with-authenticode-and-md5-collisions/#comment-34128</link>
		<dc:creator>SecurityGuy.org &#187; Blog Archive &#187; Playing With Authenticode and MD5 Collisions - The IT Security Blog</dc:creator>
		<pubDate>Sun, 25 Jan 2009 15:34:26 +0000</pubDate>
		<guid isPermaLink="false">http://blog.didierstevens.com/?p=1156#comment-34128</guid>
		<description>[...] http://blog.didierstevens.com/2009/01/17/playing-with-authenticode-and-md5-collisions/ [...]</description>
		<content:encoded><![CDATA[<p>[...] <a href="http://blog.didierstevens.com/2009/01/17/playing-with-authenticode-and-md5-collisions/" rel="nofollow">http://blog.didierstevens.com/2009/01/17/playing-with-authenticode-and-md5-collisions/</a> [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Didier Stevens</title>
		<link>http://blog.didierstevens.com/2009/01/17/playing-with-authenticode-and-md5-collisions/#comment-34104</link>
		<dc:creator>Didier Stevens</dc:creator>
		<pubDate>Wed, 21 Jan 2009 07:42:01 +0000</pubDate>
		<guid isPermaLink="false">http://blog.didierstevens.com/?p=1156#comment-34104</guid>
		<description>In general, for a new development, design your system for &quot;easy&quot; swap-out of the hashing function. Take one of the SHA2 functions, and in a couple of years, switch to the new SHA3 standard.

Can you give more details of your performance requirements?</description>
		<content:encoded><![CDATA[<p>In general, for a new development, design your system for &#8220;easy&#8221; swap-out of the hashing function. Take one of the SHA2 functions, and in a couple of years, switch to the new SHA3 standard.</p>
<p>Can you give more details of your performance requirements?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Didier Stevens</title>
		<link>http://blog.didierstevens.com/2009/01/17/playing-with-authenticode-and-md5-collisions/#comment-34103</link>
		<dc:creator>Didier Stevens</dc:creator>
		<pubDate>Wed, 21 Jan 2009 07:37:08 +0000</pubDate>
		<guid isPermaLink="false">http://blog.didierstevens.com/?p=1156#comment-34103</guid>
		<description>Thanks Thierry!</description>
		<content:encoded><![CDATA[<p>Thanks Thierry!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Thierry Zoller</title>
		<link>http://blog.didierstevens.com/2009/01/17/playing-with-authenticode-and-md5-collisions/#comment-34100</link>
		<dc:creator>Thierry Zoller</dc:creator>
		<pubDate>Tue, 20 Jan 2009 23:39:28 +0000</pubDate>
		<guid isPermaLink="false">http://blog.didierstevens.com/?p=1156#comment-34100</guid>
		<description>Great work Didier, thanks for investing time to explain it step  by step.</description>
		<content:encoded><![CDATA[<p>Great work Didier, thanks for investing time to explain it step  by step.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: k</title>
		<link>http://blog.didierstevens.com/2009/01/17/playing-with-authenticode-and-md5-collisions/#comment-34099</link>
		<dc:creator>k</dc:creator>
		<pubDate>Tue, 20 Jan 2009 18:16:30 +0000</pubDate>
		<guid isPermaLink="false">http://blog.didierstevens.com/?p=1156#comment-34099</guid>
		<description>SHA-1 is showing cracks. AES does not yet have an accepted/standardized hashing algorithm. In your opinion, currently, what is the next best hashing standard if a developer is concerned about performance (and not limited to microsoft&#039;s signing tools)?</description>
		<content:encoded><![CDATA[<p>SHA-1 is showing cracks. AES does not yet have an accepted/standardized hashing algorithm. In your opinion, currently, what is the next best hashing standard if a developer is concerned about performance (and not limited to microsoft&#8217;s signing tools)?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Interesting Information Security Bits for 01/19/2009 at Infosec Ramblings</title>
		<link>http://blog.didierstevens.com/2009/01/17/playing-with-authenticode-and-md5-collisions/#comment-34093</link>
		<dc:creator>Interesting Information Security Bits for 01/19/2009 at Infosec Ramblings</dc:creator>
		<pubDate>Mon, 19 Jan 2009 21:08:57 +0000</pubDate>
		<guid isPermaLink="false">http://blog.didierstevens.com/?p=1156#comment-34093</guid>
		<description>[...] is at it again. Good thing he is on our side :0 Playing With Authenticode and MD5 Collisions &lt;&lt; Didier Stevens Tags: ( md5 malware [...]</description>
		<content:encoded><![CDATA[<p>[...] is at it again. Good thing he is on our side :0 Playing With Authenticode and MD5 Collisions &lt;&lt; Didier Stevens Tags: ( md5 malware [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Forscher erstellt Dateien mit &#8220;Fake&#8221; Microsoft Authenticode™ &#171; Netzhappen</title>
		<link>http://blog.didierstevens.com/2009/01/17/playing-with-authenticode-and-md5-collisions/#comment-34087</link>
		<dc:creator>Forscher erstellt Dateien mit &#8220;Fake&#8221; Microsoft Authenticode™ &#171; Netzhappen</dc:creator>
		<pubDate>Mon, 19 Jan 2009 10:44:02 +0000</pubDate>
		<guid isPermaLink="false">http://blog.didierstevens.com/?p=1156#comment-34087</guid>
		<description>[...] Forscher Didier Stevens ist es in einer Studie gelungen Dateien zu generieren deren Signatur identisch  mit einer Authenticode-signierten [...]</description>
		<content:encoded><![CDATA[<p>[...] Forscher Didier Stevens ist es in einer Studie gelungen Dateien zu generieren deren Signatur identisch  mit einer Authenticode-signierten [...]</p>
]]></content:encoded>
	</item>
</channel>
</rss>
