After coming across an article from Matasano Security titled, "JavaScript Cryptography Considered Harmful," I decided to submit a question to the Security Now podcast to get a second opinion on the security of JavaScript cryptography. Here is Steve Gibson's take on the question of secure JavaScript cryptography in episode 365 of his podcast:
Matasano Security seems to be assuming a different use case than I'm interested in. They assume one wants to use JavaScript cryptography as a substitute for SSL/TLS, while I'm more concerned with secure storage of data in the cloud.
Subscribe to:
Post Comments (Atom)

No comments:
Post a Comment