logoalt Hacker News

tptacektoday at 12:01 AM2 repliesview on HN

They don't actually do anything, but I think it's hard to tell a story where they make things worse, given that Cloudflare is a cryptographically competent org. It's just getting mixed into the already-secure conventional CSPRNG they're using (almost certainly: just the Linux kernel RNG).


Replies

glitchctoday at 1:15 AM

The lava lamps aren't being used as a CSPRNG, rather they constitute part of the seed for the CSPRNG.

show 1 reply
Terr_today at 12:40 AM

> I think it's hard to tell a story where they make things worse [...] mixed into the [...] CSPRNG

I think it's easy to tell a story where it's slightly worse. I mean, for any budget of storage bits and CPU cycles, any "inferior" random data necessarily pushes out "better" stuff.

show 1 reply