[Cryptech Tech] News

Peter Gutmann pgut001 at cs.auckland.ac.nz
Wed Feb 3 08:40:21 UTC 2016


Joachim Strömbergson <joachim at secworks.se> writes:

>I would also like to know what tool Zhigang Wang used to generate the number.

Probably Google.  Then you cut & paste what's in the first search result on
Stackexchange.

(It really is that bad, the amount of crappy code that gets propagated through
there is scary: people have a problem they can't easily solve, Google leads
them to Stackexchange where others have had the same problem, they grab the
code there, done).

Alternatively, it could have been 128 bytes from /dev/random.  "FIPS 140 needs
a random number of size X, this is a random number of size X":

https://www.google.co.nz/search?q=%E2%80%9Cstring+to+make+the+random+number+generator+think+it+has+entropy%E2%80%9D

Peter.


More information about the Tech mailing list