• Gensecpass2 - Ditched Mouse Hooks, Now Using Dual Keyboard Entropy

    From Gabx@virebent@tcpreset.invalid to mail2news on Fri Oct 17 14:09:12 2025
    From Newsgroup: sci.crypt

    Hey folks,
    quick update on gensecpass2.
    I removed the mouse entropy collection that was using robotn/gohook because it kept breaking compilation on Linux with nasty X11 conflicts.
    Plus those native dependencies were a nightmare for cross-platform builds.

    So I switched to something actually better: two keyboard challenges instead. Challenge 1 has you type chaotically (just slam random keys fast), while Challenge 2 captures your typing rhythm with irregular pauses.
    Turns out this gives us *better* entropy anyway since we're capturing nanosecond-precision timing data that's impossible to replicate.

    Now it compiles everywhere without fighting with native libraries, and the security is even stronger because human typing patterns are genuinely unpredictable. Win-win!

    Have fun !

    Gabx

    --- Digital Signature --- eo/+fhNUpuGlr/x6B/Pj0KecehIZ3UUZb5Ts4zjQESHyVDYeUHxqWxiDrTqzERY9/4M+ws/Fk+6UfvyseTr9DQ==


    --- Synchronet 3.21a-Linux NewsLink 1.2