Caveat: SHA256 broken==blockchain corrupted--your BTC transferred ta hax0r's wallet--irreversible. You can hardfork the ashes all you want, your money's gone. Poof! Fini.
You need to work in your FUD.
Your scenario is less incorrect for ECDSA than it's incorrect for SHA256.