Reply to post: Re: Keep your secret secret

Thanks for playing: New Linux ransomware decrypted, pwns itself

Anonymous Coward
Anonymous Coward

Re: Keep your secret secret

"Thanks for the tip, I'm sure future attackers will note that one :mad:"

Easy fix - use gettimeofday() to get the microseconds field and use that as the seed. So then even if you can see the file timestamp you'll have a million different possibly keys. Hardly impossible to solve but beyond most users. Or if they wanted to be really sneaky do some system op which will never take exactly the same number of microseconds to accomplish and use this further time interval as extra noise for the key.

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon