Lumifer comments on A pair of free information security tools I wrote - LessWrong

17 Post author: Nanashi 11 April 2015 11:03PM

You are viewing a comment permalink. View the original post to see all comments and the full post content.

Comments (97)

You are viewing a single comment's thread. Show more comments above.

Comment author: Lumifer 19 April 2015 02:04:46AM -1 points [-]

all the potential security flaws that we've discussed here operate under the assumption that I maliciously attempted to subvert the stated purpose of this tool

This is not true at all. Security flaws of a crypto tool are bugs which make it less secure than expected and which the author is typically not aware of. Software with a hidden malicious load is just a trojan (or malware in general).

Comment author: Nanashi 19 April 2015 03:41:33AM 3 points [-]

Note that I said "all the potential security flaws we've discussed here". Not, "any possible security flaw."

This is precisely why I've been annoyed by the direction this thread has taken. If someone wants to talk about potential flaws specific to this tool, I'm all ears. But instead it's mostly been a discussion about all the different ways I could possibly slip a Trojan into this tool.

Comment author: Lumifer 19 April 2015 05:33:25AM 2 points [-]

But instead it's mostly been a discussion about all the different ways I could possibly slip a Trojan into this tool.

I don't believe I ever said anything like that.

Comment author: Nanashi 19 April 2015 11:54:28AM 2 points [-]

You didn't. Sorry, I should have clarified. When I said "this thread" I meant "the comments in general" and not your particular reply.