In certificates, md5 - and sha1 - was used quite some time after it was known to be weak, I suspect OP was thinking of that.
This article seems to give a good summary what happened with sha1, mentions md5 in passing and links the related chromium issue: https://konklone.com/post/why-google-is-hurrying-the-web-to-...
In certificates, md5 - and sha1 - was used quite some time after it was known to be weak, I suspect OP was thinking of that.
This article seems to give a good summary what happened with sha1, mentions md5 in passing and links the related chromium issue: https://konklone.com/post/why-google-is-hurrying-the-web-to-...