3 ms·
Yeah, you're onto something. What about it hashes itself, sends the hash to the server through a tunnel generated by the questionable cryptosystem. If that che
by aResponder23 12y ago
Yeah, you're onto something.
What about it hashes itself, sends the hash to the server through a tunnel generated by the questionable cryptosystem. If that checks out, the server sends back a more robust cryptosystem through the questionable tunnel.
But Then we're right back where we started. Is that questionable tunnel weak enough to be considered vulnerable?
End-to-end is more easily checked for security.
To me, Javascript's good for an embedded system, no doubt about the possibility of a cryptosystem being implementable, but, it's difficult to consider it secure for many use cases.