Seer of the tapes! Knower of the episodes!

  • 2 Posts
Joined 1 year ago
Cake day: July 3rd, 2023


  • The question I get asked by religious people all the time is, without God, what’s to stop me from raping all I want?

    And my answer is: I do rape all I want. And the amount I want is zero. And I do murder all I want, and the amount I want is zero.

    The fact that these people think that if they didn’t have this person watching over them that they would go on killing, raping rampages is the most self-damning thing I can imagine.

    I don’t want to do that. Right now, without any god, I don’t want to jump across this table and strangle you. I have no desire to strangle you. I have no desire to flip you over and rape you.

    -Penn Jillette

  • Even the researcher who reported this doesn’t go as far as this headline.

    “I am an admin, should I drop everything and fix this?”

    Probably not.

    The attack requires an active Man-in-the-Middle attacker that can intercept and modify the connection’s traffic at the TCP/IP layer. Additionally, we require the negotiation of either ChaCha20-Poly1305, or any CBC cipher in combination with Encrypt-then-MAC as the connection’s encryption mode.


    “So how practical is the attack?”

    The Terrapin attack requires an active Man-in-the-Middle attacker, that means some way for an attacker to intercept and modify the data sent from the client or server to the remote peer. This is difficult on the Internet, but can be a plausible attacker model on the local network.