On Thu, 30 Aug 2012, Winfried Tilanus wrote:
> The SHA1 hashes used in python-django-registration are publicly visible.
> An attack against the SHA1 in python-django-registration would not need
> a compromise of the database first, but can be performed against openly
> available data.

What openly available data are you referring to?

Cheers,
-- 
Raphaël Hertzog ◈ Debian Developer

Get the Debian Administrator's Handbook:
→ http://debian-handbook.info/get/


--
To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Reply via email to