2 ms·
Why not just store a second hash with a different algorithm, and check both hashes match?
by tkremer 10y ago
Why not just store a second hash with a different algorithm, and check both hashes match?
- Buge 10y agoThat's a good idea, but only provides full protection if all git clients do it. The official git client itself doesn't support that, so people would still be vulnerable if they got a malicious half from github, or a signature on a non-malicious half from github and a malicious half somewhere else. This protection github is implementing uses a heuristic to try to find collision attempts by just looking at a single file. So it prevents github from hosting any collision attempts.
- Achshar 10y agoI don't think github is in a place to change how git itself works. That's Linus and the team's job.