TheCaconym [any]

  • 0 Posts
  • 12 Comments
Joined 4 years ago
cake
Cake day: September 19th, 2020

help-circle




  • TheCaconym [any]@hexbear.nettoLemmy@lemmy.mlLemmy 0.19 Breaking Changes
    link
    fedilink
    English
    arrow-up
    17
    arrow-down
    2
    ·
    edit-2
    1 year ago

    While SHA1 might be considered problematic security-wise in terms of collision (using it for certs today would be very bad, for example), it is not problematic in terms of preimage attacks (even MD5 isn’t broken that way IIRC), which is what truly matters in the context of 2FA / TOTPs

    As for “why not SHA256”, compatibility







  • For decades there have been a wide variety of shady filehosts that will happily host content with no regard for IP and offer downloading for the same (good for them). They manage to make money by offering “premium” subscriptions that allow to download without having to wait / bandwidth limitation (these days you even have services that try to mutualize such premium accounts between users for a smaller fee, using their proxy to serve their own users). For just as long there have been websites that index those direct filehost links, and make money through either ads or members donations. It’s an alternative to torrenting. Gog-games is an example of such an indexing website (there are many, many others). 1fichier is an example of the filehosters I mentioned above (same remark).

    To answer your question, the reason they don’t go down is they routinely operate in jurisdictions that are hard to act on by LE in the imperial core; they also often pay lip service to DMCA requests by actually removing content after reports, though they’ll almost universally make the process complicated, long, and pretty useless (not removing identical files reachable from other links, for example).