Settings

Theme

Ask HN: What did Sony do wrong with PS3 signing?

1 points by dt3ft a year ago · 1 comment · 1 min read

Reader

Background info: https://arstechnica.com/gaming/2010/12/ps3-hacked-through-poor-implementation-of-cryptography/

From the article:

> But when fail0verflow worked backwards from generated keys, they found out that a parameter that should have been randomized for each key generation wasn't being randomized at all. Instead, the PS3 was using the same number for that variable, every single time, making it easy to work out acceptable keys.

Which parameter are they talking about? Seed?

stop50 a year ago

For publickey cryptography you need a lot of high quality random numbers, but those are tricky to generate, so sony saved time and reused some of them to save cpu time.

Keyboard Shortcuts

j
Next item
k
Previous item
o / Enter
Open selected item
?
Show this help
Esc
Close modal / clear selection