Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

One minor point since I see a lot of people get this wrong: 3DES is, to the best of anyone's (public) knowledge over the last like 35 years, secure to its intended security level (112 bits, which is basically fine). The only real problem with it is that it's ridiculously slow; there are plenty of faster stream ciphers with higher security levels. 1DES, meanwhile, is weak, but only because a 56-bit security level is useless today.

That said, yes, TLS 1.0, RC4, and SHA1 are all starting to smell, and it's probably time to toss them down the drain.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: