aeris22’s avataraeris22’s Twitter Archive—№ 47,815

  1. …in reply to @lvh
    @lvh @CiPHPerCoder bad urandom can be « easily » fixed with openssl. Just re-seed with something pretty random. Time is not perfect but […]
    1. …in reply to @aeris22
      @lvh @CiPHPerCoder remains difficult to guess for an attacker. Protect yourself from bad entropy hardware like raspi, olimex, virtualisation
      1. …in reply to @aeris22
        @lvh @CiPHPerCoder The trouble is not using urandom. But using urandom with a low level entropy pool. Once again, NaCl is not silver bullet.