logoalt Hacker News

bawolff • today at 2:04 AM • 1 reply • view on HN

I think the only good argument here is that sha is maybe not a security control for git. I think every other argument in this article is incorrect

a) it's relatively fast and impossible in a practical sense for two different files to accidentally hash to the same value.

That is silly. We are not worried about accidentally triggering. We are worried about intentional triggers.

I dont know why people always bring this up for hashing. In any other context it would be considered silly. If someone said, the chance of triggering a buffer overflow by accident is low, we would call that silly as we aren't worried about accidental triggers.

b) second pre-image vs collision. In a world of open source where we accept commits from randoms on the internet, i think collisions are just as relavent as second pre-image.


Replies

eviks • today at 2:22 AM

a) it's silly to stop reading at that quote because the following text deals with "identification"

b) so, you agree with the blog? "So, any realistic interesting attack vector therefore relies on a collision attack,"

➕ show 1 reply