Stanford University's seminar explores the pitfalls of random number generation, covering RSA, Diffie-Hellman, and Linux generators in a 1-2 hour material.
Introduction.
Textbook RSA.
Textbook Diffie-Hellman.
Taiwan Citizen Digital Certificate Smartcards.
Should we expect to find key collisions in the wild?.
What happens if we look for repeated keys?.
Classifying repeated keys.
Attributing SSL and SSH vulnerabilities to implementations.
Random number generation in software.
Linux random number generators.
Devices generating weak DSA signatures.
Stanford Online
1 x Booting (63.77%) | 191.42ms |
1 x Application (35.99%) | 108.03ms |
Params | |
---|---|
0 |
|
1 |
|
2 |
|
Params | |
---|---|
0 |
|
1 |
|
2 |
|
3 |
|
4 |
|
5 |
|
Params | |
---|---|
0 |
|
1 |
|
2 |
|
3 |
|
4 |
|
5 |
|
6 |
|
Params | |
---|---|
0 |
|
1 |
|
2 |
|
3 |
|
4 |
|
5 |
|
Params | |
---|---|
0 |
|
1 |
|
2 |
|
3 |
|
4 |
|
5 |
|
Params | |
---|---|
0 |
|
1 |
|
2 |
|
3 |
|
4 |
|
5 |
|
6 |
|
Params | |
---|---|
0 |
|
1 |
|
2 |
|
3 |
|
4 |
|
5 |
|
Params | |
---|---|
0 |
|
1 |
|
2 |
|
3 |
|
4 |
|
5 |
|
Params | |
---|---|
0 |
|
1 |
|
2 |
|
3 |
|
4 |
|
5 |
|
Params | |
---|---|
0 |
|
1 |
|
2 |
|
3 |
|
4 |
|
5 |
|
Params | |
---|---|
0 |
|
1 |
|
2 |
|
3 |
|
4 |
|
5 |
|
6 |
|
7 |
|
Params | |
---|---|
0 |
|
1 |
|
2 |
|
3 |
|
4 |
|
5 |
|
6 |
|
7 |
|
Params | |
---|---|
0 |
|
1 |
|
2 |
|
3 |
|
4 |
|
5 |
|
6 |
|
7 |
|
Params | |
---|---|
0 |
|
1 |
|
2 |
|
3 |
|
4 |
|
5 |
|
select * from `courses` where `slug_ar` = 'stanford-seminar---how-not-to-generate-random-numbers' limit 1
Metadata | |
---|---|
Bindings |
|
Backtrace |
|
update `courses` set `visitors` = `visitors` + 1, `courses`.`updated_at` = '2025-05-08 12:23:48' where `id` = 1614
Metadata | |
---|---|
Bindings |
|
Backtrace |
|
select `id`, `name_en`, `name_ar`, `topic_id`, `slug_en`, `slug_ar` from `subjects` where `subjects`.`id` in (1)
Metadata | |
---|---|
Backtrace |
|
select `id`, `name_en`, `name_ar`, `slug_en`, `slug_ar` from `topics` where `topics`.`id` in (1)
Metadata | |
---|---|
Backtrace |
|
select * from `institutions` where `institutions`.`id` in (5) and `institutions`.`deleted_at` is null
Metadata | |
---|---|
Backtrace |
|
select * from `providers` where `providers`.`id` in (21) and `providers`.`deleted_at` is null
Metadata | |
---|---|
Backtrace |
|
select * from `html_files` where `html_files`.`id` = 1606 limit 1
Metadata | |
---|---|
Bindings |
|
Backtrace |
|
200
[]
[]
0 of 0array:24 [▼ "cf-ipcountry" => array:1 [▶ 0 => "US" ] "cf-connecting-ip" => array:1 [▶ 0 => "18.188.216.102" ] "cdn-loop" => array:1 [▶ 0 => "cloudflare; loops=1" ] "x-forwarded-proto" => array:1 [▶ 0 => "https" ] "x-forwarded-for" => array:1 [▶ 0 => "18.188.216.102" ] "sec-fetch-site" => array:1 [▶ 0 => "none" ] "accept" => array:1 [▶ 0 => "text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7" ] "user-agent" => array:1 [▶ 0 => "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)" ] "upgrade-insecure-requests" => array:1 [▶ 0 => "1" ] "sec-ch-ua-platform" => array:1 [▶ 0 => ""Windows"" ] "sec-ch-ua-mobile" => array:1 [▶ 0 => "?0" ] "sec-ch-ua" => array:1 [▶ 0 => ""Chromium";v="130", "HeadlessChrome";v="130", "Not?A_Brand";v="99"" ] "cache-control" => array:1 [▶ 0 => "no-cache" ] "pragma" => array:1 [▶ 0 => "no-cache" ] "sec-fetch-dest" => array:1 [▶ 0 => "document" ] "cf-ray" => array:1 [▶ 0 => "93c8ee2d99e486f2-ORD" ] "accept-encoding" => array:1 [▶ 0 => "gzip, br" ] "priority" => array:1 [▶ 0 => "u=0, i" ] "sec-fetch-user" => array:1 [▶ 0 => "?1" ] "sec-fetch-mode" => array:1 [▶ 0 => "navigate" ] "cf-visitor" => array:1 [▶ 0 => "{"scheme":"https"}" ] "host" => array:1 [▶ 0 => "www.corspedia.com" ] "content-length" => array:1 [▶ 0 => "" ] "content-type" => array:1 [▶ 0 => "" ] ]
0 of 0array:50 [▼ "USER" => "www-data" "HOME" => "/var/www" "HTTP_CF_IPCOUNTRY" => "US" "HTTP_CF_CONNECTING_IP" => "18.188.216.102" "HTTP_CDN_LOOP" => "cloudflare; loops=1" "HTTP_X_FORWARDED_PROTO" => "https" "HTTP_X_FORWARDED_FOR" => "18.188.216.102" "HTTP_SEC_FETCH_SITE" => "none" "HTTP_ACCEPT" => "text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7" "HTTP_USER_AGENT" => "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)" "HTTP_UPGRADE_INSECURE_REQUESTS" => "1" "HTTP_SEC_CH_UA_PLATFORM" => ""Windows"" "HTTP_SEC_CH_UA_MOBILE" => "?0" "HTTP_SEC_CH_UA" => ""Chromium";v="130", "HeadlessChrome";v="130", "Not?A_Brand";v="99"" "HTTP_CACHE_CONTROL" => "no-cache" "HTTP_PRAGMA" => "no-cache" "HTTP_SEC_FETCH_DEST" => "document" "HTTP_CF_RAY" => "93c8ee2d99e486f2-ORD" "HTTP_ACCEPT_ENCODING" => "gzip, br" "HTTP_PRIORITY" => "u=0, i" "HTTP_SEC_FETCH_USER" => "?1" "HTTP_SEC_FETCH_MODE" => "navigate" "HTTP_CF_VISITOR" => "{"scheme":"https"}" "HTTP_HOST" => "www.corspedia.com" "REDIRECT_STATUS" => "200" "SERVER_NAME" => "corspedia.com" "SERVER_PORT" => "443" "SERVER_ADDR" => "141.95.147.152" "REMOTE_USER" => "" "REMOTE_PORT" => "62012" "REMOTE_ADDR" => "172.70.131.202" "SERVER_SOFTWARE" => "nginx/1.18.0" "GATEWAY_INTERFACE" => "CGI/1.1" "HTTPS" => "on" "REQUEST_SCHEME" => "https" "SERVER_PROTOCOL" => "HTTP/2.0" "DOCUMENT_ROOT" => "/var/www/corspedia/public" "DOCUMENT_URI" => "/index.php" "REQUEST_URI" => "/ar/%D8%A7%D9%84%D8%AF%D9%88%D8%B1%D8%A7%D8%AA/stanford-seminar---how-not-to-generate-random-numbers" "SCRIPT_NAME" => "/index.php" "CONTENT_LENGTH" => "" "CONTENT_TYPE" => "" "REQUEST_METHOD" => "GET" "QUERY_STRING" => "" "SCRIPT_FILENAME" => "/var/www/corspedia/public/index.php" "PATH_INFO" => "" "FCGI_ROLE" => "RESPONDER" "PHP_SELF" => "/index.php" "REQUEST_TIME_FLOAT" => 1746707028.3499 "REQUEST_TIME" => 1746707028 ]
[]
0 of 0array:5 [▼ "content-type" => array:1 [▶ 0 => "text/html; charset=UTF-8" ] "cache-control" => array:1 [▶ 0 => "no-cache, private" ] "date" => array:1 [▶ 0 => "Thu, 08 May 2025 12:23:48 GMT" ] "set-cookie" => array:2 [▶ 0 => "XSRF-TOKEN=eyJpdiI6ImtGRnFXckdiQ1ZTOFVqVy9SVTBOWUE9PSIsInZhbHVlIjoiZmhDSDJhc09mVitrMmtZZU44R0srWk43bGJ2Y0dJTVlESmJ3VUhVeXBOekZCUHlGMDdiTE1sdFBqUjc5VGlBSmVDVUF4V0lERGR1KzdUNENjbUdlcGtFM2laN3B6eVROZDQ0dnZ1Zy81R1ZncHdSUGViSU0vT3d0RUF1eWFUZDUiLCJtYWMiOiI0NTJhNmFlZTU4ZGNhZmFiNzAzOGYyNzY1NGJhNDNiNDM2ZDFiMGVkOWZlN2Q0ZWVjYzg1OThlYTIxYTkyMzgxIiwidGFnIjoiIn0%3D; expires=Thu, 08 May 2025 14:23:48 GMT; Max-Age=7200; path=/; samesite=lax ◀XSRF-TOKEN=eyJpdiI6ImtGRnFXckdiQ1ZTOFVqVy9SVTBOWUE9PSIsInZhbHVlIjoiZmhDSDJhc09mVitrMmtZZU44R0srWk43bGJ2Y0dJTVlESmJ3VUhVeXBOekZCUHlGMDdiTE1sdFBqUjc5VGlBSmVDVUF4V ▶" 1 => "laravel_session=eyJpdiI6IngvVGZJWE9EdXljRW9jMWRXRGpiWGc9PSIsInZhbHVlIjoiMmZvN1hUVTJ6dzgrclJrZGczNUlzVlhJWjNlaXY1NGZpaEdpMG1CbzdmM0hlZU4vNmVHeURsUmtCOStHRW90WW12ZFZ4QWxmaW5uOVlId3N3cmttVldNN0VwOE1uWStzK0o1Q2lKNHVjemowUE9kSzJERFpha2ZrQitaK3BGN24iLCJtYWMiOiI4ODdiOWM3OGE1YWUxMWE4MmVjOTQ3NjZmYjc2MDg2MGU4OWQwZDVmMTI1NjExOWEzOGYxNTY0NzI1ODEzYmEwIiwidGFnIjoiIn0%3D; expires=Thu, 08 May 2025 14:23:48 GMT; Max-Age=7200; path=/; httponly; samesite=lax ◀laravel_session=eyJpdiI6IngvVGZJWE9EdXljRW9jMWRXRGpiWGc9PSIsInZhbHVlIjoiMmZvN1hUVTJ6dzgrclJrZGczNUlzVlhJWjNlaXY1NGZpaEdpMG1CbzdmM0hlZU4vNmVHeURsUmtCOStHRW90WW12 ▶" ] "Set-Cookie" => array:2 [▶ 0 => "XSRF-TOKEN=eyJpdiI6ImtGRnFXckdiQ1ZTOFVqVy9SVTBOWUE9PSIsInZhbHVlIjoiZmhDSDJhc09mVitrMmtZZU44R0srWk43bGJ2Y0dJTVlESmJ3VUhVeXBOekZCUHlGMDdiTE1sdFBqUjc5VGlBSmVDVUF4V0lERGR1KzdUNENjbUdlcGtFM2laN3B6eVROZDQ0dnZ1Zy81R1ZncHdSUGViSU0vT3d0RUF1eWFUZDUiLCJtYWMiOiI0NTJhNmFlZTU4ZGNhZmFiNzAzOGYyNzY1NGJhNDNiNDM2ZDFiMGVkOWZlN2Q0ZWVjYzg1OThlYTIxYTkyMzgxIiwidGFnIjoiIn0%3D; expires=Thu, 08-May-2025 14:23:48 GMT; path=/ ◀XSRF-TOKEN=eyJpdiI6ImtGRnFXckdiQ1ZTOFVqVy9SVTBOWUE9PSIsInZhbHVlIjoiZmhDSDJhc09mVitrMmtZZU44R0srWk43bGJ2Y0dJTVlESmJ3VUhVeXBOekZCUHlGMDdiTE1sdFBqUjc5VGlBSmVDVUF4V ▶" 1 => "laravel_session=eyJpdiI6IngvVGZJWE9EdXljRW9jMWRXRGpiWGc9PSIsInZhbHVlIjoiMmZvN1hUVTJ6dzgrclJrZGczNUlzVlhJWjNlaXY1NGZpaEdpMG1CbzdmM0hlZU4vNmVHeURsUmtCOStHRW90WW12ZFZ4QWxmaW5uOVlId3N3cmttVldNN0VwOE1uWStzK0o1Q2lKNHVjemowUE9kSzJERFpha2ZrQitaK3BGN24iLCJtYWMiOiI4ODdiOWM3OGE1YWUxMWE4MmVjOTQ3NjZmYjc2MDg2MGU4OWQwZDVmMTI1NjExOWEzOGYxNTY0NzI1ODEzYmEwIiwidGFnIjoiIn0%3D; expires=Thu, 08-May-2025 14:23:48 GMT; path=/; httponly ◀laravel_session=eyJpdiI6IngvVGZJWE9EdXljRW9jMWRXRGpiWGc9PSIsInZhbHVlIjoiMmZvN1hUVTJ6dzgrclJrZGczNUlzVlhJWjNlaXY1NGZpaEdpMG1CbzdmM0hlZU4vNmVHeURsUmtCOStHRW90WW12 ▶" ] ]
0 of 0array:5 [▼ "_token" => "l5UkjPCOtT2rzrtOezysTjof9BaYX6kKAoNFO7HX" "locale" => "ar" "_previous" => array:1 [▶ "url" => "https://www.corspedia.com/ar/%D8%A7%D9%84%D8%AF%D9%88%D8%B1%D8%A7%D8%AA/stanford-seminar---how-not-to-generate-random-numbers" ] "_flash" => array:2 [▶ "old" => [] "new" => [] ] "PHPDEBUGBAR_STACK_DATA" => [] ]