Hacker News new | ask | show | jobs
by raverbashing 4566 days ago
It looks to me the SHA1 part is the least of their worries.

Yes, the pillar may corrode in 30 years, but the load is actually on a smaller and frailer pillar

1 comments

And yet, the fact that a bridge design contains a pillar that any expert expects to collapse after 30 years might tell you something about the designer's competence and thus about the viability of the whole design.

This is not so much about showing how to break their system, but about showing how their design methodology is likely to produce an unreliable system - because that (a) is much easier to do than actually breaking a system and (b) precisely because of that is how cryptographers usually work and (c) it is actually known to be possible to build systems that are more likely to be and to stay secure, so there is no point in compromising reliability for implementability.