> Beware the side-channel attack. Crypto done right, mathematically, is
> not secure anymore. You need certain functions to take the same
> amount
> of time always, or you can gleam off bits from information theoretic
> attacks.

This reminds of something from the annals of history, from the golden age of computing. Apparently on a Dec-10 you could tell how many of the characters in an attempted password were correct by the time it took for the system to return that it was an illegal password. Or so the legends say.


