logoalt Hacker News

teravoryesterday at 3:55 PM1 replyview on HN

this is a well known attack...

if your algorithm controls a source of entropy and can inspect the other sources, it can craft its source to bias the result. a fanciful attack but it means you should at least discriminate what you put into the pool.


Replies

tptacekyesterday at 5:07 PM

Can you link to the paper you're thinking of? Maybe people are just talking past each other here. A biased random source can't bias the kernel random pool in any straightforward kind of way.

show 1 reply