Skip to content

[Important] the default random library is **not** pure random  #4

@bee-san

Description

@bee-san

Use Secrets:
https://docs.python.org/3/library/secrets.html
Better yet, i don't trust this package. since we're using Linux we can just get the OS to do it for us ?
https://pynative.com/cryptographically-secure-random-data-in-python/

For this file:
https://github.com/exgen-code/ExGen-Client/blob/master/py/saltgen.py
If we use the normal random library we can be hacked easily :)

Metadata

Metadata

Assignees

No one assigned

    Labels

    bugSomething isn't working

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions