3 ms·
the issue is that the client runtime environment is poisoned as well
by trotsky 16y ago
the issue is that the client runtime environment is poisoned as well
- phlux 16y agoSuspecting as much
- trotsky 16y agohttp://vimeo.com/11303353 http://vimeo.com/11303353
- Estragon 16y agoNot sure what your point is, here. I listened to it, and it was very interesting, but the speaker has actually implemented encrypted communications on Android, so he clearly isn't too worried about it being poisoned.
- x09 16y agoDid we listen to the same talk? He is a practitioner in the field of security ("choice", "society"). OP: many thanks for the link. The problem of the compromised platform is an interesting one. A programmable dongle would address the compromised host platform. (Used to be a JVM on a chip dongle out there back in late 90s... just run on that and treat your pc as hostile.)
- trotsky 16y agoI'm not sure there is one perfect 100% answer for that question, but I might suggest "that was then, this is now?" https://twitter.com/#!/moxie__/status/48185775111684096 https://twitter.com/#!/moxie__/status/48185775111684096 It is probably worth noting that the speaker (and tweeter) has had some significant delays in the last year while clearing customs.
- Estragon 16y agoOh, I've no doubt that the authorities dislike him. The SSL certificate story made that clear. :-)