Comment on Sha256 vulnerability for full roundsComments−amenghra9yIt's unfortunate that proof.py doesn't give an example of a message block that leads from h0 to the q._h constant.I.e. Free-start collisions don't let you create two PDFs with the same sha256 hash.
Comments
It's unfortunate that proof.py doesn't give an example of a message block that leads from h0 to the q._h constant.
I.e. Free-start collisions don't let you create two PDFs with the same sha256 hash.