| ▲ | bawolff an hour ago | |
I think the only good argument here is that sha is maybe not a security control for git. I think every other argument in this article is incorrect a) it's relatively fast and impossible in a practical sense for two different files to accidentally hash to the same value. That is silly. We are not worried about accidentally triggering. We are worried about intentional triggers. I dont know why people always bring this up for hashing. In any other context it would be considered silly. If someone said, the chance of triggering a buffer overflow by accident is low, we would call that silly as we aren't worried about accidental triggers. b) second pre-image vs collision. In a world of open source where we accept commits from randoms on the internet, i think collisions are just as relavent as second pre-image. | ||
| ▲ | eviks 32 minutes ago | parent [-] | |
a) it's silly to stop reading at that quote because the following text deals with "identification" b) so, you agree with the blog? "So, any realistic interesting attack vector therefore relies on a collision attack," | ||