Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Stupidly bad design - storing other people's private keys in a protected memory region. This is as good as entrusting a safe with your money to a thief, thinking that the guy will be unable to open it.

Marlinspike, yet again, flops face down with his credibility as a crypto researcher.

Remember his his angry letter about silent key renegotiation hole in Facebook messenger



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: