Eric Snow wrote:
> Eric Snow <> added the comment:
>> The vulnerability is known since 2003 (Usenix 2003): read "Denial of
>> Service via Algorithmic Complexity Attacks" by Scott A. Crosby and Dan
>> S. Wallach.
> Crosby started a meaningful thread on python-dev at that time similar to the current one:
> It includes a some good insight into the problem.

Thanks for the pointer. Some interesting postings...

Vulnerability of applications:

Speed of hashing, portability and practical aspects:

Changing the hash function:
