[liberationtech] Google confirms critical Android crypto flaw

Maxim Kammerer mk at dee.su
Thu Aug 15 03:40:00 PDT 2013


On Thu, Aug 15, 2013 at 11:11 AM, Nadim Kobeissi <nadim at nadim.cc> wrote:
> Cryptocat had its own RNG fiasco recently as well, which was documented in this excellent blog post by Sophos Labs:
> http://nakedsecurity.sophos.com/2013/07/09/anatomy-of-a-pseudorandom-number-generator-visualising-cryptocats-buggy-prng/

Nadim, I understand that you continue posting this link due to its
impressive visualizations of trivial math, but do you have any
evidence that the probability skew bug in question meaningfully
affected the security of CryptoCat?

-- 
Maxim Kammerer
Liberté Linux: http://dee.su/liberte



More information about the liberationtech mailing list