Hacker Times
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
fragmede
15 days ago
|
parent
|
context
|
favorite
| on:
TS-2026-009: Insecure argument handling in Tailsca...
Why is that worse than the issue itself? If someone could figure out, say, my root password via an ssh timing attack, that seems bad. Sending 100 packets for each keystroke to protect against this seems cheap in the face of that.
sam_lowry_
15 days ago
[–]
Because it breaks our mental model of how things work.
skinfaxi
15 days ago
|
parent
[–]
Or it means it is time to update the model. Models need to change as the world they model changes, right?
sam_lowry_
15 days ago
|
root
|
parent
[–]
The OpenBSD developers could have opted for a warning, like the one you see about post-quantum encryption when connecting to old servers.
Instead, they just sneaked the change upon the world.
Consider applying for YC's Fall 2026 batch!
Applications
are open till July 27.
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: