SHAttered. We have broken SHA-1 in practice. This industry cryptographic hash function standard is used for digital signatures and file integrity verification, and protects a wide spectrum of digital assets, including credit card transactions, electronic documents, … SHA-1 Broken - Schneier on Security SHA-1 is broken but not yet cracked. This is a compressor function collision, getting to a full hash function collision has not yet happened. We have a couple of years (but not much more) to plan a transition to more secure algorithms. Mike• February 16, 2005 2:07 AM Solved: SHA-1 broken - Cisco Community Although we can now "officially" say SHA-1 is broken, the attack is not directly applicable to the HMAC usage in VPNs. For some of my customers, I know that SHA-1 won't go away for quite some time. But every time a VPN is touched, it is a good idea to negotiate if it can be migrated to better crypto. hash - Why is SHA-1 considered broken? - Cryptography

Apr 11, 2017 SHA-1 is broken (Bulletproof TLS Newsletter Issue #25) SHA-1 is broken. It’s been expected for a long time, now it’s finally happened: the research team from Marc Stevens at CWI Amsterdam teamed up with Google to create two files with the same SHA-1 hash.Hash functions like SHA-1 are an important building block of almost all cryptographic protocols. SHAttered