I am slightly mistaken. Without checkpoints that prevent a longer chain from going too far backwards in time, a broken SHA-256 could be a serious threat.
If Sha-256 is broken i think the coin is screwed anyway. I mean even private addresses will be a lot less secure.