On 2011-11-02, Jack Lloyd wrote:

> It seems like it would be harder (or at least not easier) to find a 
> collision or preimage for HMAC with an unknown key than a collision or 
> preimage for an unkeyed hash, so using HMAC(H(m)) allows for an avenue 
> of attack that HMAC(m) would not, namely finding an inner collision 
> (or preimage) on H.

Agreed, and in general this seems like yet another version of the 
"repeated crypto is automatically safer" fallacy. That has already been 
discussed in the past, more than one time.
