aeris22’s avataraeris22’s Twitter Archive—№ 47,816

    1. …in reply to @lvh
      @lvh @CiPHPerCoder bad urandom can be « easily » fixed with openssl. Just re-seed with something pretty random. Time is not perfect but […]
  1. …in reply to @aeris22
    @lvh @CiPHPerCoder remains difficult to guess for an attacker. Protect yourself from bad entropy hardware like raspi, olimex, virtualisation
    1. …in reply to @aeris22
      @lvh @CiPHPerCoder The trouble is not using urandom. But using urandom with a low level entropy pool. Once again, NaCl is not silver bullet.