[PLUG] Linux-based Web Servers: Random Number Seed Pool Insufficiencies

Rich Shepard rshepard at appl-ecosys.com
Sun Aug 9 20:33:10 UTC 2015


   If the activities (e.g., mouse movements, keyboard presses) used to
generate random number seeds are too few, the seed 'pool' has insufficient
entropy and becomes more vulnerable to hacking. This has been observed on
linux-based Web servers as reported at the Black Hat Conference in Lost
Wages:

<http://www.bbc.com/news/technology-33839925>

Rich



More information about the PLUG mailing list