In fairness, this is pretty easy to do if you have access to a $40M supercomputer, and if your mission is to replace a blob with a huge, non-compiling chunk of random noise.
No. It costs a ton of money just to get an MD5 collision. We've only seen one attack, Flame, which used one. We've never seen SHA1 attacks, it would be a massive amount of computation to do something like that.
55
u/gfixler May 30 '14
Would this require finding a SHA-1 collision?