Hacker Newsnew | past | comments | ask | show | jobs | submitlogin
Flickr's API vulnerable to straightforward message digest attack (netifera.com)
13 points by tptacek on Sept 28, 2009 | hide | past | favorite | 2 comments



The major problem with Flickr's scheme is both academically trivial and something that Colin didn't (in any public forum) notice. Which says nothing about Colin, who is very smart, and everything about how ridiculous it is to try to build secure systems that depend on basic crypto primitives.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: