Download your favorite Linux distribution at LQ ISO.
Go Back > Forums > Linux Forums > Linux - Security
User Name
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.


  Search this Thread
Old 06-20-2010, 05:22 AM   #1
LQ Newbie
Registered: Sep 2009
Posts: 1

Rep: Reputation: 0
Off-the-Record plugin, SHA-1 or SHA-2?

Hey everyone at LQ,

Iíve being digging around the net for some clarification about the Off-The-Record plugin for Pigdin (and other IM's).
Basically i want to know if it uses the SHA-1 or SHA-2 hash function. Some might say iím wearing my tin foil hat but the SHA-1 was cracked in 2005 and as far as i know SHA 2 is much more secure.

Wikipedia states it's SHA 1 and the authors of the OTR plugin mention both SHA-1 and SHA-2 in their documentation, and i couldnít find an active pidgin forum (could only find the archived pigdin forums on sourgeforge)

Unless their's a better method to use IM securely?

Cheers guys.

Old 06-21-2010, 09:28 AM   #2
Senior Member
Registered: Feb 2003
Location: CT
Distribution: Debian 6+, CentOS 5+
Posts: 1,323

Rep: Reputation: 100Reputation: 100
What are you talking about that you want encrypted....j/k. Perhaps they have built in SHA-2 in the newest plugin version. Why not try contacting one of the authors? Even though SHA-1 has been broken all encryption is not infallible and eventually breakable so SHA-1 may be work it for you.


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off

Similar Threads
Thread Thread Starter Forum Replies Last Post
md5/sha-1 with perl shifter Programming 2 03-31-2010 10:14 AM
sha-1 openssl on debian Lenny knobby67 Programming 1 09-11-2009 08:00 AM
SHA-1 Standard Cracked mikeheggy Linux - Security 8 02-21-2005 05:52 AM
sha-1 encryption and endianness sade Linux - Software 0 08-24-2004 10:16 AM
SHA, MD5, LDAP for passwords mastahnke Linux - Security 2 09-25-2003 02:36 AM > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 11:50 PM.

Main Menu
Write for LQ is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration