Broken hash function (practical collisions). Must not be used for any security purpose.
At a glance
| Quantum risk | Weakened by quantum |
|---|---|
| Used for | Hash function |
| Post-quantum algorithm | No |
Positions and deadlines by authority
| Authority | Position | Effective | Scope | Details |
|---|---|---|---|---|
| IETF | Disallowed | in force | all variants | Not acceptable for signatures or any collision-resistance use. |
Recommended replacements
Sources
- RFC 6151 — Updated Security Considerations for the MD5 Message-Digest and HMAC-MD5 Algorithms · IETF
Catalog version 2026-09-28. Every position links to its primary source; draft documents are labelled as such.