Hacker News new | ask | show | jobs
by Raj123123 3968 days ago
seems they aren't limited to just future output:

"Using that private key, they can observe CSPRNG output on the wire, “decrypt it”, and use that to rewind and fast-forward other people’s CSPRNGs, discovering their keys."