I am increasingly concerned with the possibility that the SHA1 algorithm, that is at the heart of e-commerce, may be on the verge of succumbing to the relentless march of Moore’s Law.
A very convincing calculation by Jesse Walker (shown in Bruce Schneier’s blog), estimates the cost of a single collision attack to fall bellow $200,000 by 2018, and below $50,000 by 2021. This simply means that a determined hacker with a strong financial motive will soon be able to launch a successful attack on 99% of all organizations that engage in online commerce.