Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> Using "one-time-use combinations of three English words" is "fine" only if your definition of "fine" includes allowing someone with a minimal budget to find out the password in less than a year.

Magic Wormhole uses a PAKE to establish a secure channel from a low-entropy shared secret.



I admit that I missed that part. My mistake, I apologise.


You might also acknowledge your faulty critique of systems that use XSalsa20.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: