On Thu, 30 Aug 2012, Winfried Tilanus wrote:
> The SHA1 hashes used in python-django-registration are publicly visible.
> An attack against the SHA1 in python-django-registration would not need
> a compromise of the database first, but can be performed against openly
> available data.

What openly available data are you referring to?

Cheers,
-- 
Raphaël Hertzog ◈ Debian Developer

Get the Debian Administrator's Handbook:
→ http://debian-handbook.info/get/

_______________________________________________
Python-modules-team mailing list
[email protected]
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/python-modules-team

Reply via email to