3 ms·
Furthermore, why brute-force crack crypto when you can inject code using the log4j exploit which transmits the private keys. Sure log4j might have been recentl
by cobookman 5y ago
Furthermore, why brute-force crack crypto when you can inject code using the log4j exploit which transmits the private keys.
Sure log4j might have been recently patched, but it's not unrealistic to think that a nation-state has access to similar exploits.
- api 5y agoYes, a thousand times. The vast majority of compromises happen because of software exploits or social engineering. This is not an argument for using shitty cryptography, but it is IMHO an argument for being more afraid of the implementation and the human beings using it than the crypto.