Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Finding a collision is one thing, you'd then need to find a way to connect via the colliding IP.


Either way it's an unnecessary risk. People with access to a /smallnumber might still be able to exploit it. I find it quite ironic that they are all like "Common guys, use this new stuff, old stuff is bad!" -- then they go on presenting a solution that makes use of md5.


You're replying to their CEO.


Thank you. Sorry for directing the comment improperly.

Feel free to argue the actual argument presented.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: