Typo: On Mon, Jan 4, 2021 at 5:25 PM Conrad Meyer <cem at freebsd.org> wrote: > SHA1 has always, by design, been vulnerable to a 2^80 resource attack :-). 2^160 for a specific hash. 2^80 if you're just trying to find any collision.