logoalt Hacker News

tptacekyesterday at 5:07 PM1 replyview on HN

Can you link to the paper you're thinking of? Maybe people are just talking past each other here. A biased random source can't bias the kernel random pool in any straightforward kind of way.


Replies

teravoryesterday at 5:33 PM

I explicitly said

    > it becomes dangerous if they can preview the results or inspect the other sources
because the malicious source can just precompute the hash for the bias it wants.

https://blog.cr.yp.to/20140205-entropy.html

show 1 reply