|
|
|
|
|
by daghamm
466 days ago
|
|
This is very useful to anyone writing TOTP tools, big thanks to the author. However, reading the article this section caught my eye: "As we now know, SHA-1 has some fundamental weaknesses. ... But the TOTP authors disagree and allow a for some different algorithms to be used." With significant compute resources SHA1 can be broken for some use cases, but I don't think this is one of them. Is HN aware of any practical attacks against TOTP-SHA1? |
|