logoalt Hacker News

teravoryesterday at 5:33 PM1 replyview on HN

I explicitly said

    > it becomes dangerous if they can preview the results or inspect the other sources
because the malicious source can just precompute the hash for the bias it wants.

https://blog.cr.yp.to/20140205-entropy.html


Replies

adastra22yesterday at 6:40 PM

You're assuming a hash preimage attack, which would be a complete break of the cryptosystem. (Your link only works on the toy implementation given.)