This is one of two MAJOR crypto vulnerabilities being disclosed Monday. A separate one, also involving multiple vendors, drops at 4 am PT.https://twitter.com/dangoodin001/status/919789886810374144 …
-
-
Cryptographers picked the wrong week to quit sniffing glue ;-)
Show this threadThanks. Twitter will use this to make your timeline better. Undo
-
-
-
Yeah... at least I am not the only one. (I also think this is worse then the wpa2 vuln which can or should be easy patched compared to this)
Thanks. Twitter will use this to make your timeline better. Undo
-
-
-
Is there something I should be scanning the Internet for?
-
I'd start by scanning for Twitter users who suggest the world is about to end because of these crypto shenanigans.
-
If Risk=probability+consequence, then I consider risk <=average at most, except highly targeted "APT" attacks. Then again: paranoia.
-
@thorsheim@martijn_grooten why would you downgrade the threat against the most widely used wireless security protocol? Just curious -
1) Because if you want to attack my WPA2 you need to come here. 2) Attack doesn't scale: an attacker can't be everywhere at the same time.
-
I don't need signal in range of your access point. Your users BYOD to Starbucks.
-
Yup. And the likelihood of an attacker in the same Starbucks at the same time as one of my users is actively doing plaintext online..?
-
New conversation -
-
-
-
ugh http://keychest.net is behind the
#greatcloudwall -
You know,
@KeybaseIO you or someone with full access to your database of pubkeys could do a lot of good in the world right now by testing all your keys for this. Not saying you should, but you could.
End of conversation
New conversation -
-
-
It is a free image (CC license) of the first e-residency card in the U.S.https://flic.kr/p/q5xXnL
Thanks. Twitter will use this to make your timeline better. Undo
-
-
-
You are on
!Thanks. Twitter will use this to make your timeline better. Undo
-
-
-
really. so who is launghing at my key lenght now
@btchip longer key is always betterpic.twitter.com/lLhNrhTcL0 -
If it affects finding a good prime 4096 bits keys generated by this library should also be considered pretty much broken, unfortunately.
-
I red a bit more. it look my key is not broken because not generated using a smartcard + this library. will soon need more dices XD
End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.
