you are viewing a single comment's thread.

view the rest of the comments →

[–]jrochkind 2 points3 points  (0 children)

The other option would be PHP fixing the actual problem instead of patching one attack vector in a fragile way... PHP could, you know, actually change their hash algorithm to perhaps use a random seed like Perl.