Hacker News new | ask | show | jobs
by mikeash 3752 days ago
Knowing all the details is key, though. For example, it's easy to vastly reduce the entropy of cryptographic keys, but still make them look completely random from the outside. The Debian OpenSSL bug is an extreme example of doing this by accident. It took a year and a half to discover that, and that was with the buggy source code available the whole time.