On Thu, 30 Aug 2012, Winfried Tilanus wrote: > The SHA1 hashes used in python-django-registration are publicly visible. > An attack against the SHA1 in python-django-registration would not need > a compromise of the database first, but can be performed against openly > available data.
What openly available data are you referring to? Cheers, -- Raphaël Hertzog ◈ Debian Developer Get the Debian Administrator's Handbook: → http://debian-handbook.info/get/ -- To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org