-
@voodooKobra @zooko And this is what I say on the first tweet. « slowest is the best » is true only for offline-attack.
-
@voodooKobra @zooko But offline-attack is not only password hashing. It’s digital signature and download integrity check too.
-
@voodooKobra @zooko The only usage where speed is important is when hashing is frequent, like integrity verification on each TLS message
-
@voodooKobra @zooko And in most if not all those cases, size of hash is to take into account too. SHA-1 is perfectly good and fast here.
aeris22’s Twitter Archive—№ 21,663