spaze / hashes Goto Github PK
View Code? Open in Web Editor NEWMagic hashes – PHP hash "collisions"
Magic hashes – PHP hash "collisions"
The
==
trick is used only for MD5, SHA-1, and plaintext
It should be noted that the ==
trick doesn't work with php 5.4.4+ since as of php 5.4.4 "Integral strings that overflow into floating point numbers will no longer be considered equal"
Since that overflow issue is what the ==
trick is actually using, it's important to note the version dependency.
Although I do understand there are some exceptions with md5 that still work with the ==
trick even in php 7.1 https://3v4l.org/krCff
corrections to the plaintext items this list shows various PHP versions that may or may not allow the ==
trick to work https://3v4l.org/sHmuG
Hi everyone who read this,
While doing a security CTF challenge, I found some other strange hashes on a Stackoverflow discussion
Only Numbers
Only letters
Maybe it could be useful to someone..maybe not!
Originally posted by @r3g31rk in #20 (comment)
I was trying to add these hashes to seclists when I ran into a issue verifying the pbkdf hashes. The problem is that I can’t seem to get a magic hashes out of any entries for pbkdf2-*
files. If anyone knows how to correctly hash the entries using cyberchef or php please leave the code here.
This website has some magic hashes that are not in the repo: https://www.whitehatsec.com/blog/magic-hashes/
I found it when searching for tiger160,3 hashes and the one there is different from the one in the repo
A declarative, efficient, and flexible JavaScript library for building user interfaces.
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
An Open Source Machine Learning Framework for Everyone
The Web framework for perfectionists with deadlines.
A PHP framework for web artisans
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
Some thing interesting about web. New door for the world.
A server is a program made to process requests and deliver data to clients.
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
Some thing interesting about visualization, use data art
Some thing interesting about game, make everyone happy.
We are working to build community through open source technology. NB: members must have two-factor auth.
Open source projects and samples from Microsoft.
Google ❤️ Open Source for everyone.
Alibaba Open Source for everyone
Data-Driven Documents codes.
China tencent open source team.