Practical Collision Attack Against Long Key IDs in PGP

In response to the GPG.Fail attacks, a Hacker News user made this claim about the 64-bit "Long Key IDs" used by OpenPGP and GnuPG, while responding to an answer I gave to someone else's question: OK, to be clear, I am specifically contending that a key fingerprint does not include collisions. My proof is empirical, that no one has come up with an attack on 64 bit PGP key fingerprints.

soatok.blog/2026/01/07/practic

0
0
0

If you have a fediverse account, you can quote this note from your own instance. Search https://furry.engineer/users/soatok/statuses/115855402039229608 on your instance and quote it. (Note that quoting is not supported in Mastodon.)