SHA-1

E437745

SHA-1 is a now-legacy 160-bit cryptographic hash function once widely used for data integrity and digital signatures but today considered insecure due to practical collision attacks.

All labels observed (3)

Label Occurrences
SHA-1 canonical 10
Secure Hash Algorithm 1 2
SHA-1 (conceptual lineage) 1

How this entity was disambiguated

Statements (59)

Predicate Object
instanceOf cryptographic hash function
hash function
message digest algorithm
abbreviationOf Secure Hash Algorithm 1
linked to: SHA-1
bitLength 160 bits
blockSize 512 bits
browserSupportForTLSCertificates removed by major browsers by 2017
category legacy cryptographic algorithm
chosenPrefixCollisionProjectName SHA-1 is a Shambles
chosenPrefixCollisionYear 2020
collisionComplexityBestKnown significantly less than 2^80 operations
collisionComplexityTheoretical 2^80 operations
collisionResistance broken in practice
deprecatedBy CA/Browser Forum
NIST
designedBy National Security Agency
digestSize 20 bytes
firstPublicCollisionDemonstratedBy CWI Amsterdam
Google
firstPublicCollisionProjectName SHAttered
firstPublicCollisionYear 2017
introducedInYear 1995
notation Secure Hash Algorithm 1
linked to: SHA-1
outputSize 160 bits
partOfStandard FIPS 180-1
FIPS 180-2
FIPS 180-3
linked to: FIPS 180-2

FIPS 180-4
predecessor SHA-0
preimageResistance not practically broken as of late 2010s
recommendedReplacement SHA-2 family
linked to: SHA-2

SHA-256
SHA-3 family
rounds 80
secondPreimageResistance not practically broken as of late 2010s
securityStatus insecure against collision attacks
standardizedBy NIST
status deprecated
successor SHA-224
linked to: SHA-2

SHA-256
SHA-3
linked to: Keccak

SHA-384
linked to: SHA-2

SHA-512
usedFor TLS certificates
data integrity
digital signatures
file checksums
version control systems
usedIn Git
Mercurial
PGP implementations
Subversion (optional components)
X.509 certificates
usesConstruction Merkle–Damgård construction
usesOperation bitwise operations
logical functions
modular addition
vulnerabilityType chosen-prefix collision attacks
collision attacks

How these facts were elicited

Referenced by (13)

Full triples — surface form annotated when it differs from this entity's canonical label.

SHA-256 predecessor SHA-1
RIPEMD-160 comparedTo SHA-1
SHA-0 successor SHA-1
SHA-0 replacedBy SHA-1
SHA-2 predecessor SHA-1
SHA-1 notation Secure Hash Algorithm 1
linked to: SHA-1
SHA-1 abbreviationOf Secure Hash Algorithm 1
linked to: SHA-1
BLAKE2b successorTo SHA-1
MD4 successor SHA-1 (conceptual lineage)
linked to: SHA-1