Get the latest tech news

Linux 6.14 To Switch From SHA1 To SHA512 For Module Signing By Default


While many Linux distribution vendor kernels are already using SHA-512 for signing modules by default rather than the default SHA-1, the upstream Linux 6.14 kernel is also now switching the default over to using SHA-512 for better security.

SHA512 is more modern and much more secure than SHA1 against attacks with SHA1 weaknesses being well known for many years at this point. SHA1 signing support remains available within the Linux kernel at this time but no longer the default. It's a long overdue change for using SHA512 as the upstream default for signing kernel modules and will be part of Linux 6.14 with the code merged today.

Get the Android app

Or read this on Phoronix

Read more on:

Photo of Linux

Linux

Photo of default

default

Photo of module signing

module signing

Related news:

News photo

Linux 6.14 Brings Some Systems Faster Suspend and Resume

News photo

Apple Intelligence, previously opt-in by default, enabled automatically in iOS 18.3

News photo

Linux Patches Allow Sharing PTEs Between Processes - Can Mean Significant RAM Savings