Practical Collision Attack Against Long Key IDs in PGP
In response to the GPG.Fail attacks, a Hacker News user made this claim about the 64-bit "Long Key IDs" used by OpenPGP and GnuPG, while responding to an answer I gave to someone else's question: OK, to be clear, I am specifically contending that a key fingerprint does not include collisions. My proof is empirical, that no one has come up with an attack on 64 bit PGP key fingerprints.
http://soatok.blog/2026/01/07/practical-collision-attack-against-long-key-ids-in-pgp/
