HNHacker News
TopNewBestAskShowJobs

tprynn

362 karma · joined March 9, 2012

hn@tannerprynn.com
submissionscomments
tprynn··on Setting up a home VPN server with WireGuard
Yes and yes, the $5 droplet is perfect for wireguard.
tprynn··on Creating a Magical Videobooth for a Wedding
The animation effect seems to be adapted from the Yellowtail project which they cite as inspiration.

Original: http://flong.com/projects/yellowtail/ JS Port: https://github.com/n1ckfg/yellowtails Demo: https://n1ckfg.github.io/yellowtails/p5js/

tprynn··on Constant-Time Mul
The reason not to implement this in inline assembly is that you would have to implement unique assembly for each architecture supported, which would mean probably dozens of different implementations, especially considering that even on a given architecture there are notable processor-family differences in whether the same multiply instruction is constant time or not.

In any case, I think it's safe to say that 'pornin knows more about writing safe C code (and dealing with strange compiler behavior) than almost anyone.

tprynn··on Let’s Destroy Robocalls
That's only true with Do Not Disturb, which also silences all other notifications as well, a major drawback (for me, at least).
tprynn··on At Blind, a security lapse revealed private complaints from tech employees
It doesn't matter what algorithm you use to hash passwords when users login if you also store them md5-ed somewhere else!
tprynn··on What Does ‘Off the Record’ Really Mean?
I flagged this comment because it seems to be an obvious violation of the HN guidelines:

* Eschew flamebait. Don't introduce flamewar topics unless you have something genuinely new to say. Avoid unrelated controversies and generic tangents.

tprynn··on What Does ‘Off the Record’ Really Mean?
I flagged this comment because I believe it is far outside of appropriate discussion to dehumanize someone in the way your comment does. For other commenters, the original comment before editing said:

"And now this thing works for the NYTimes."

and after an initial edit, it says:

"And now this... 'person' works for the NYTimes."

tprynn··on Show HN: The Curious Expedition – A Steam game in HTML5
Slightly directed at a sibling comment, but yes indie games (can) make a significant amount of revenue through non-release sales, even at heavy discounts. For example, Dustforce more than doubled its cumulative revenue through a 50% steam sale and inclusion in a Humble Bundle: http://hitboxteam.com/dustforce-sales-figures
tprynn··on Self-driving Uber car kills Arizona woman crossing street
Then your comment is off-topic, because the realm of discussion was explicitly "self-driving cars equipped with LIDAR". Uber's self-driving vehicles are all equipped with LIDAR, as are basically all other prototype fully-autonomous vehicles.
tprynn··on Show HN: Culture Queries – The best questions to ask during your job interview
I found the easter egg! Hilarious way to handle the quora-like "subscribe for more", and actually got me to subscribe. I won't spoil it for others.
tprynn··on Secure Remote Password protocol
I don't think you'll find many people in the security industry who think ProtonMail is anything but a joke. I'll leave you with this (written by 'tptacek): https://www.nccgroup.trust/us/about-us/newsroom-and-events/b...
tprynn··on Secure Remote Password protocol
Looking back at my notes, I think my earlier comment was misleading. The offline brute force was due to an insecure random number generator, which allowed an attack against B to recover b (and from there crack the 8 digit code). So, uh, ... I'm wrong on the internet. I think we've talked about this attack before actually :P
tprynn··on Secure Remote Password protocol
1Password uses TLS, and SRP inside TLS. If TLS is broken as in Cloudbleed, SRP hopefully still protects the channel - at least against non-active attacks such as Cloudbleed. The security still ultimately relies on TLS. Having not read the document fully, I think those would be against initial registration or in an active MITM allowing password-guessing. I'm looking at page 52 of https://1password.com/teams/white-paper/1Password%20for%20Te....
tprynn··on Secure Remote Password protocol
I haven't read enough about the other PAKEs to know what offline attacks look like there, but the fact that they are endemic to PAKEs is a total footgun.

For example, one implementation of SRP I looked at used 8-digit codes (e.g. 12345678) to connect new devices to a network. Eight digits was enough to prevent brute-forcing by repeatedly sending codes to the server, but not enough to prevent an attacker from MITMing the connection and brute-forcing the code offline, because the server was using a bad RNG.

tprynn··on Secure Remote Password protocol
While this is interesting historical reading, SRP is badly outdated and should not be used for any newly built systems. It has a lot of non-obvious failure modes around parameter handling and offline password cracking that have broken the authentication mechanism in every implementation I've seen in the real world (new implementations, not when using large packages such as OpenSSL).

Furthermore, PAKEs are of relatively limited utility; in almost every situation you could use a PAKE, there is a better, more battle-tested alternative. You will be much less likely to have complete authentication bypass in your system if you use mutual TLS rather than a PAKE.

If you have to use a PAKE, use a reviewed implementation of SPAKE2. Oh wait, there aren't any. Don't use a PAKE.

tprynn··on Ask HN: How do you set prices?
You are wrong. Many states have laws against this type of deceptive pricing, and it's against the FCC's guidelines as well: http://www.ecfr.gov/cgi-bin/text-idx?SID=0fe5a1d5614a06c2f27...
tprynn··on Cross-Site Request Forgery is dead
Other comments have mentioned the obvious issue that you can't use this feature across multiple browsers. So you still need CSRF tokens, and the title is just wrong.

He also mentions checking the origin/referrer header. I would strongly recommend against this strategy; as he says, it doesn't work everywhere. Specifically, regular form submissions will not include the origin header in most browsers, and the referrer header is simply not reliable.

More importantly, multiple strategies for CSRF protection is bad. You need to fall back on tokens anyway, so the "check origin first" method is basically just an extra bypass for attackers to abuse. Two checks in this case are significantly worse than one, because if either is broken you are insecure.

tprynn··on Cross-Site Request Forgery is dead
You are wrong. The 'origin' of a script is the domain which loads it, not the domain where it is hosted. (Those can be the same, though.)
tprynn··on Security researchers call for Guardian to retract false WhatsApp backdoor story
The average user does not know anything about encryption! But they have heard about hacking, so they know that if a popular paper is reporting something as insecure, they shouldn't use it. What will they use instead? Whatever is available, and the next most available messenger is SMS.

There are users who could literally (yes, literally) have their lives saved by using whatsapp rather than SMS. But because of this article, they won't. You don't have to take my word for that. Zeynep works with those people, and will tell you the same thing.

tprynn··on Flaws in deterministic password managers
Not to be too pointed, but would you consider adding this disclaimer to your blog post and github repo? Hopefully that will inform potential users before using a system that could leave them less secure.
tprynn··on Don’t support laws you are not willing to kill to enforce (2014)
Thanks for your clear argument. I was definitely arguing 'past' the parent, and this helped me to see that. Won't hide my shame at completely missing the point.
tprynn··on Don’t support laws you are not willing to kill to enforce (2014)
The discussion of cigarette sales/taxes is clearly a strawman. If you believe that we shouldn't have laws unless we are willing to kill to enforce them, you should be able to defend this argument against a law which the vast majority of people will support. For example, I would not choose to kill someone for driving drunk, but strongly support laws which ban drunk driving and remove the ability to drive from convicted drunk drivers.
tprynn··on Reflections: The ecosystem is moving
The fact that Signal exists, and I can use it every day with friends and coworkers, is evidence that we are not locked in. No one is making money from Signal, and anyone who uses Signal can switch to any of ten different (less secure) apps in five minutes. And if Signal goes away or whatever, we can build our own! The only thing stopping us is that we are a lot worse at designing crypto than Moxie and Trevor ;)
tprynn··on Reflections: The ecosystem is moving
I'll add my thoughts here, since I think a number of people will be disappointed in this post.

There are a number of competing goals when developing software that "the whole world can/will use". And it seems obvious to me that getting the whole world to use a secure, encrypted messenger like Signal (now, Whatsapp) is a noble goal. The obvious competing goal is federation, and the fact that we've failed at improving federated services (e-mail being the best/most important example) is a problem.

Ultimately, Moxie's arguments here hold a lot of sway for me. I think it sucks that constantly-improving services are impossible to address in a federated way, and he's not really offering a solution to that. But instead he presents arguments I hadn't thought about much, which is that perhaps non-federated services can be dramatically better than federated services in the short-term. And in the long term, perhaps we'll move back to federated services; right now, the cost of changing services/ecosystems is very low. So we don't need to be as 'doom-and-gloom' about the fact that Signal does not achieve all the competing goals, because it achieves a number of extremely important goals right now, and we can work on the other goals in the future.

tprynn··on How Secure is TextSecure?
Here's a quote from a post I enjoyed (https://www.elttam.com.au/blog/a-review-of-the-eff-secure-me...):

> This type of score card drastically simplifies the problem domain, and leads one to question what the tradeoffs are when installing an application from the list. While the advocacy of privacy based communication is something we love to see reach a mainstream audience, we believe the scorecard misses many considerations and metrics that are critical to the discussion.

To quote myself:

> The EFF score card is an embarrassment which is essentially equivalent to one of those "comparison table of our competitors" on a SaaS website. That's a good analogy for it, because it uses the same questionable metrics and even more questionable ranking system that one of those tables would use. The score card gives Signal the same ranking as Cryptocat - that's an instant negative result for its usefulness.

tprynn··on Jan Koum: “I couldn't agree more with everything [Apple] said”
The EFF score card is an embarrassment which is essentially equivalent to one of those "comparison table of our competitors" on a SaaS website. That's a good analogy for it, because it uses the same questionable metrics and even more questionable ranking system that one of those tables would use. The score card gives Signal the same ranking as Cryptocat - that's an instant negative result for its usefulness.
tprynn··on Amazon Dash Button
Wi-Fi is power hungry because it's always on. It seems like these little buttons would only need to connect when you press them, then shut off right after. It's a very minor power draw when you consider the wi-fi will only run for 15 seconds every month or so. Of course, that's my read on it - maybe it does connect to the Echo.
tprynn··on “Sierra… well, it was the poor victim of a hostile takeover by criminals”
Hitbox (devs of indie game Dustforce) wrote a really good article about their numbers: http://hitboxteam.com/dustforce-sales-figures
tprynn··on Behind League of Legends, E-Sports’s Main Attraction
I agree that Riot could do more with the spectator experience, but you should be careful comparing Valve's International profits with Riot's Championship Series. For one, the cost of Riot's esports push encompasses the entire scene, around the world. Riot pays player salaries for the players on every professional team in their sponsored series, which have tournaments and matches pretty much every week throughout the year. They have these series in North America, Europe, South America, SE Asia, Korea, China, and Australia, each with many teams of five players each. So, with an armchair estimation, it's easy to see how just the cost of those salaries without any benefits could be in the tens of millions. Then you have to factor in the support staff, facilities, equipment, travel, and much more. Valve sponsors one single tournament a year, and offsets the cost by selling interactive features. Ultimately, they are just different models and I think both could learn from each other.
tprynn··on The New Moto G
The new Moto G is larger than the old version (129.9 mm (5.11 in) H; 65.9 mm (2.59 in) W; 11.6 mm (0.46 in) D).
← PreviousPage 2 of 3Next →