Details
-
Improvement
-
Minor
-
None
Description
Earlier this year Google announced the first SHA1 collision and they recommend moving to a safer hash algorithm.
We hope that our practical attack against SHA-1 will finally convince the industry that it is urgent to move to safer alternatives such as SHA-256.
Do you plan to generate or handle .sha512 or .sha256 checksums files in addition to the .sha1 ones for Maven artifacts?
Thanks.