Menu

#Crypto

434 posts

Feed·
20 of 434 posts
Math.random() Is Not Random Enough. I Found It Building API Keys in a 44K-Star Repo.
🖼️
0

Math.random() Is Not Random Enough. I Found It Building API Keys in a 44K-Star Repo.

DEV Community: javascript·Ofri Peretz·2 days ago
#q71fU1lc
#dev#random#math#fullscreen#crypto#article

Math.random() is a PRNG, not a CSPRNG. An attacker who observes a few outputs can predict every future call. I found this exact pattern generating API keys in a 44K-star open-source codebase. Here is why it matters and the ESLint rule that catches it.

15s
Read More
📰
0

Reddit - Please wait for verification

Cryptography news and discussions·/u/silene0259·3 days ago
#UkT0w0E7

Hello, I was wondering why SHA3 is considered more secure than SHA2. I also was wondering about Shake256 vs SHA3 as I’m implementing SLH-DSA for my application. Thanks. submitted by /u/silene0259 [link] [comments]

15s
Read More
📰
0

Reddit - Please wait for verification

Cryptography news and discussions·/u/sciencekm·3 days ago
#5cB8jdnI

I'm deriving the session keys using Keccak/SHA3 by absorbing three(3) things: (1) the salt, (2) the common secret and (3) bits from a common key file. Normally, all three are concatenated and then padded, and the whole thing is absorbed.…

15s
Read More
📰
0

Reddit - Please wait for verification

Cryptography news and discussions·/u/sciencekm·3 days ago
#r9jAG79L

I understand that the Ed25519 variety of EdDSA uses SHA-512 for the random oracle H. Would replacing H with Keccak be provably secure? I'm in a situation where the systems are constrained in ROM and RAM.…

15s
Read More
📰
0

Reddit - Please wait for verification

Cryptography news and discussions·/u/HarmonyKarmaxul·3 days ago
#2NA9E9Vd

I've built a 4096-bit hash function called ci-sha4096 with an unusual property — every round constant is independently verifiable from first principles, derived from two orthogonal sources: K-constants from Ci = 85/27, a rational constant whose fractional…

15s
Read More
📰
0

Reddit - Please wait for verification

Cryptography news and discussions·/u/Far_Conference_9450·3 days ago
#qNfIKn6X

https://github.com/LamprosM-prog/schnorr-interactive-protocol-csharp Hi first post here, this is a "tutorial" of of schnorr's interactive ZKP protocol. Using a Trace all mathematical equations are showcased in the a console. Any feedback is welcome !…

15s
Read More
📰
0

Reddit - Please wait for verification

Cryptography news and discussions·/u/MediumLibrarian7100·3 days ago
#0bpiGe9o

Been digging into post quantum cryptography lately and why lattice based crypto feels convincing. I've noticed most people talk about quantum threats from a Grover perspective: “Quantum computers just search faster” “Security gets roughly cut in half”…

15s
Read More
📰
0

ZEEUS CRYPTO RECOVERY SERVICES - HOW TO RECOVER LOST OR STOLEN CRYPTO: BEST WAY INVESTORS CAN RECOVER THEIR LOST INVESTMENT

DEV Community: vue·Sonia Arnold·3 days ago
#MtsNGcBH
#dev#recovery#crypto#services#zeus#justice

WhatsApp (24/7 Support): +44 7353 848036 Website: https://zeusrecoveryservices.com Email: support@zeusrecoveryservices.com In a world increasingly driven by cryptocurrency, USDT, and digital finance, countless individuals have become targets of…

15s
Read More
CFTC Paves Way for Crypto’s Trillion-Dollar Offshore Trade
📰
0

CFTC Paves Way for Crypto’s Trillion-Dollar Offshore Trade

Bloomberg Markets·Nicola M White, Denitsa Tsekova·3 days ago
#krmF4lhU
#bloomberg#mdash#years#popular#trade#crypto

For years, the most popular way to trade crypto — a never-expiring, highly leveraged contract called a perpetual future — has existed almost entirely beyond the reach of US regulators, thriving on offshore exchanges that operate outside American law.

15s
Read More