Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

This is not a strong take, the "fix" doesn't completely fixes the vulnerability. Passwords or private keys are not the same as a user-provided crypto-seed without checksums. This is supposed to be critical PKI software.

It's about corruption and bit rot, not about seed length. This is a project of a ex-google employee, used in chromium, that google publicly endorses; that's definitely akin to a "google project".



> akin to a "google project".

LOL, ok.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: