Hacker News new | ask | show | jobs
by austinz 4670 days ago
Thought tptacek's link on Javascript crypto, linked to in the article (and sort of a motivator for the experiment), was well worth a read.

http://www.matasano.com/articles/javascript-cryptography/

1 comments

Okay, this has absolutely nothing to do specifically with javascript in the browser! This attack is applicable to ANY system where the application designer leaves sensitive data in a place that can trivially accessed by malicious applications if they jump through a few simplistic hoops!

Mega left user data in an essentially public place.