> What's the point of verifying md5sums against official values, if Kali 
> can't even get the "official values" securely ??

I'm a bit concerned about the use of MD5; was it not broken i.e. 
collisions detected some years ago?

