Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Upload a file consisting of all zeroes (or any other known content for that matter) and now the contents of the screen is the secret used to XOR the input. Surely you meant something a bit more substantial?


You can check for a magic string after decryption and only update the screen if valid.


At this point you might as well just require a plaintext password to update the screen, and forget the XOR.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: