This critique is 2.5 years old and does not include the cryptonite library of @vincenthz
-
-
-
Cryptonite looks like it addresses both the entropy and the random number bias problems! I'll update the blog post
End of conversation
New conversation -
-
-
The guy who maintains most of the noted libraries had an (undisclosed and) unspecified prior job with US Gov't in cryptography. I don't believe this is innocent. cc:
@solatispic.twitter.com/mK6U5DYAot
-
It's been a while since I wrote the post, and I'm not sure whether the status quo has changed for Haskell. Ideally someone writes a wrapper around a vetted library like NaCl; I had good hopes for https://github.com/thoughtpolice/salt … , but that appears to be unfinished and unmaintained.
End of conversation
New conversation -
-
-
Unless you don't believe RDRAND has a secret NSA backdoor. And even if they do, just adding in more entropy sources wouldn't necessarily help: http://blog.cr.yp.to/20140205-entropy.html …
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
TIP: don't trust everything you read, despite the headline potential, specially from 3 year ago.
-
Should I not trust it b/c it is old? Examples are still valid: https://github.com/TomMD/entropy/issues/14#issuecomment-45699556 … or https://github.com/vincenthz/hs-crypto-numbers/blob/crypto-numbers-v0.2.7/Crypto/Number/Generate.hs#L22 …
-
trust what exactly ? My point being do some research before trusting what someone else write. also repeating convenient easy conspirational things (e.g. rdrand is backdoored) doesn't make them right. as to crypto-number, has been deprecated and unused for *more* than 2 years.
-
crypto-numbers was used in the past and at that time included code generating ‘not necessarily uniform’ distribution. Title should be more explicit that it is relevant to 2015 year, but examples in it are valid in that context.
-
I'm not sure what are you asking here or arguing for here ...
- 1 more reply
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.