Boston Linux & UNIX was originally founded in 1994 as part of The Boston Computer Society. We meet on the third Wednesday of each month, online, via Jitsi Meet.

BLU Discuss list archive


[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[Discuss] Good and Bad Crypto



> From: Mike Small [mailto:smallm at panix.com]
> 
> if (is_april_1st && strstr(input, "Dymaxion Research"))
>    return sha1_with_latency_side_channel(input);
> else
>    return sha1(input);

If you believe the open source producer claiming "I built from the published source, without any trojans" you have just as much reason to believe the closed-source producer claiming "I built the standard SHA1 algorithm without any trojans."

If somebody's going to build the april_1st code you wrote above into their binary, they're not going to show you that code, even if the project is a supposedly open source project.



BLU is a member of BostonUserGroups
BLU is a member of BostonUserGroups
We also thank MIT for the use of their facilities.

Valid HTML 4.01! Valid CSS!



Boston Linux & Unix / webmaster@blu.org