Mention that blake2 is not vulnerable to length-extension attacks (#3118)

* Mention that blake2 is not vulnerable to length-extension attacks

* SHA is sort of like a word, in the sense that I want the spellcheck to shut up about it

* rephrase
2 files changed