Git 3.0's upcoming SHA-256 default will be a costly mistake
Thread
Unofficial Hacker News client; not affiliated with Y Combinator.
Git 3.0's upcoming SHA-256 default will be a costly mistake
Unofficial Hacker News client; not affiliated with Y Combinator.
quotemstr · · focus · HN ↗
happytoexplain · · focus · HN ↗
[deleted] · · focus · HN ↗
[deleted]
schacon · · focus · HN ↗
quotemstr · · focus · HN ↗
techjamie · · focus · HN ↗
<a href="https://lore.kernel.org/git/Pine.LNX.4.58.0504291221250.18901@ppc970.osdl.org/" rel="nofollow">https://lore.kernel.org/git/Pine.LNX.4.58.0504291221250.1890...
As linked by another commenter in this thread, Linus worked out years ago that even if someone inserted a malicious object into the kernel repo, it would at best be a nuisance and not a major concern.
eviks · · focus · HN ↗
> We could be using MD5 and it would honestly probably be just fine.