Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> Nothing instills confidence in cryptographic code like the constants "bananas" and "seems legit..."

Not to mention, even if the hardcoded password was somehow stored securely, using AES in ECB mode is insecure. ECB mode leaks information, particularly when applied to images: http://en.wikipedia.org/wiki/Block_cipher_mode_of_operation#...



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: