[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: cryptsetup problem



On Sun, 08 Jun 2014 07:03:32 +1000
Andrew McGlashan <andrew.mcglashan@affinityvision.com.au> wrote:

> Installed now.... looks very good!
> 
> Thanks again

Well, not so fast :(

I didn't followed the RNGs analysis closely (I pick my
randomness elsewhere), but I just stumble upon this paper:
https://eprint.iacr.org/2013/338.pdf

saying that neither regular /dev/urandom nor /dev/random
are safe (& suggesting an attack against AES-128 CTR mode 
could succeed in only 2^64 attempts).

This is a 2013 paper :(

-- 
<Mang'z> What is a TB compared to a GB?
<OMG_CSS> nothing, that's just a typo because
          "T" and "G" are too close on a keyboard.
<Mang'z> ok thks.


Reply to: