Entropy Attacks!

from blog cr.yp.to blog, | ↗ original
The conventional wisdom says that hash outputs can't be controlled; the conventional wisdom is simply wrong.