> Without a web of trust (sigh), a PKI (ugh), or some other mechanism to tie identities to trust metrics, this is essentially a complicated, very expensive, and fragile version of the shasum check npm already has. The…
Can someone explain to me why using a cached value for hashCode in an immutable string is a bad thing?
Moxie Marlinspike gave a talk at DEFCON 19 about how broken the CA model is and suggested an alternative. The talk - https://www.youtube.com/watch?v=pDmj_xe7EIQ The alternative - http://convergence.io/
> Without a web of trust (sigh), a PKI (ugh), or some other mechanism to tie identities to trust metrics, this is essentially a complicated, very expensive, and fragile version of the shasum check npm already has. The…
Can someone explain to me why using a cached value for hashCode in an immutable string is a bad thing?
Moxie Marlinspike gave a talk at DEFCON 19 about how broken the CA model is and suggested an alternative. The talk - https://www.youtube.com/watch?v=pDmj_xe7EIQ The alternative - http://convergence.io/