Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

How would this be a man in the middle attack? You should be able to record it yes but as you said keystrokes & mouse movements are used to SUPPLEMENT entropy, as in they also use other entropy.


They aren't using anything but that and `rand()`. They could use the Crypto library in Webkit, but they're not.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: