Skip to content

Comment on Linus on /dev/random: "We actually know what we are doing. You don't."parent

Comments

If they can make it look like a stream of zeros, they can make it look like a random stream which is actually a pseudo-random stream as well.

Also, they might leave some randomness in, but it can be a small enough amount of entropy that it would still render crypto keys vulnerable.

Doi. This is an obvious danger and I feel stupid for not putting two and two together.

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.