Hacker News new | ask | show | jobs
by cobbal 5122 days ago
I think the title is fairly accurate if you read it as "never use a hash when you need a MAC". MACs have nice provable security properties that you get for free, so you don't get surprises like extension attacks.