A SHA-1 collision attack has the potential to break code repositories that use the Subversion (SVN) revision control system. The first victim was the repository for WebKit browser engine that was corrupted after someone committed two different PDF files with the same hash to it. Researchers from Google and Centrum Wiskunde & Informatica in the Netherlands announced the first practical collision attack on Thursday. The issue is not specific to WebKit’s repository, but to all SVN-based repositories. The Subversion developers have released a script that SVN administrators can use to prevent.”]
Source: https://www.csoonline.com/article/3174793/sha-1-collision-can-break-svn-code-repositories.html