Hacker News new | ask | show | jobs
by zzzcpan 2174 days ago
Breaking "hand rolled" crypto is a very hypothetical threat, almost a non-existent threat, as in practice software with centralizedly controlled distribution model has many much much bigger weaknesses that advanced threat actors are going to exploit, like updates. Assuming they even can successfully break such crypto at scale, imagine how much effort would it take just to get to the encrypted bytes given all the VPNs, TOR and overlay networks providing extra layers of encryption and privacy/anonymity hiding who talks to whom by sending packet through other countries.

I guess what people should learn from this is that encryption isn't a protection without solving problems caused by centralization first.

1 comments

Well, I wouldn't say that's true, hand rolled crypto notoriously is weak when your adversary has cryptographers... like governments.

And this system sounds extremely snake-oily, and likely making typical bad crypto mistakes everywhere.