Hacker Newsnew | past | comments | ask | show | jobs | submitlogin
Length-extension attacks are still a thing (00f.net)
2 points by charles_irl 69 days ago | hide | past | favorite | 1 comment


There is HMAC but also you can defend against those attacks by throwing away some of the bits. For instance do SHA-512 and keep just the first 256 bits.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: