Skip to content
Better HN
Top
Best
Ask
Show
New
Jobs
Search
⌘K
0 points
CiPHPerCoder
7y ago
0 comments
Save
Share
Oh, this did seem familiar!
The AES-CBC thing is tied to the key, right? So the downgrade attack isn't possible.
0 comments
1 comments · 1 top-level
top
newest
oldest
xxkylexx
7y ago
Yes, new account keys are identified (presence of a mac key) and block the downgrade (see code link above).
j
/
k
navigate · click thread line to collapse