TheCaconym [any]

  • 0 Posts
  • 57 Comments
Joined 4 years ago
cake
Cake day: September 19th, 2020

help-circle















  • What you wrote is science fiction, not fact. So are practical quantum computers, thus far.

    It also ignores the fact that quantum computing would do shit all against symmetric encryption (though admittedly that’s less relevant for whatsapp, but it’s perfectly relevant if you want to exchange secure messages with someone you met physically prior); as well as the fact quantum-resistant encryption algorithms such as NTRU already exist and are already considered for implementation in free software tools (the only reason they aren’t is they’re far less tested and nobody trusts them yet against conventional attacks).





  • TheCaconym [any]@hexbear.nettoLemmy@lemmy.mlLemmy 0.19 Breaking Changes
    link
    fedilink
    English
    arrow-up
    17
    arrow-down
    2
    ·
    edit-2
    1 year ago

    While SHA1 might be considered problematic security-wise in terms of collision (using it for certs today would be very bad, for example), it is not problematic in terms of preimage attacks (even MD5 isn’t broken that way IIRC), which is what truly matters in the context of 2FA / TOTPs

    As for “why not SHA256”, compatibility