See ANSSI report http://www.ssi.gouv.fr/uploads/2014/01/NT_OpenSSH.pdf
See https://www.schneier.com/blog/archives/2005/02/sha1_broken.html