Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

One of the assumptions in designing cryptographic systems (Kerckhoff's Principle [1]) is that the attacker knows everything about the system and how it is implemented, except for the password itself. While you could hide the implementation details, that would mean that nobody could verify how strong your system is.

[1] https://en.wikipedia.org/wiki/Kerckhoffs%27s_principle



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: