15 ms·
Bitcoin's primitive is sha256(sha256(x)). There's zero reason anyone would ever use a funky construction like that for password hashing.
by everfree 3y ago
Bitcoin's primitive is sha256(sha256(x)). There's zero reason anyone would ever use a funky construction like that for password hashing.
- andirk 3y agoIs cracking a sha256(x) the same runtime as sha256(sha256(sha256(sha256((x)))))? I remember the first time I saw bitcoin's double use of sha256 like this, and I was confused as to whether there is a security benefit to this.
- ronsor 3y agoI can see it now: a developer copying Bitcoin code into his authentication library because "Bitcoin is secure"
- greyface- 3y agoFurthermore, mining ASICs bake in assumptions about the structure of x as an optimization. I'm not sure they can even be used to hash arbitrary values of x.