Peter Gutmann (pgut001@cs.auckland.ac.nz)
Thu, 30 Jul 1998 12:01:27 (NZST)
I've just been informed of another example of a very questionable RNG. Have a
look at https://spk-ihb.izb-hb.de/SPK_Forchheim/index.html, the first thing
you'll be asked to do is move your mouse a bit to generate a 128-bit session
key for use in Internet banking. Apparently moving your mouse in a 10cm
straight line is enough to generate 128 bits of entropy. Java types may want
to look at this in a bit more detail.
Peter.
The following archive was created by hippie-mail 7.98617-22 on Fri Aug 21 1998 - 17:21:01 ADT