Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

See https://news.ycombinator.com/item?id=6931457 as well.

> They should just retain Riscure or Rambus to do that for them instead of the PR stunt.

I'd love to go back through either of the previous threads and count to see how many people were saying "well, if no one can successfully win the challenge, they can use the money for a security audit!" like they are right now.

Telegram is pretty clearly a bad player that should be avoided.



They use 128bits of a SHA-1 key in 2014. I'd say its pretty clear their security is a gimmick only.

https://konklone.com/post/why-google-is-hurrying-the-web-to-...

From the contest: "This can happen if a security check is failed, or in the case that the first 128 bits of the SHA-1 of the newly created encryption key don‘t match on both parties’ clients when this stage is completed (this corresponds to Paul and Nick comparing the key visualizations for the Secret Chat in their Telegram apps)."




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: