<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Dear $LOCALBANK That I Use</title>
	<atom:link href="http://emergentchaos.com/archives/2009/08/dear-localbank-that-i-use.html/feed" rel="self" type="application/rss+xml" />
	<link>http://emergentchaos.com/archives/2009/08/dear-localbank-that-i-use.html</link>
	<description>The Emergent Chaos Jazz Combo</description>
	<lastBuildDate>Wed, 01 Feb 2012 19:20:40 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>By: Dan Weber</title>
		<link>http://emergentchaos.com/archives/2009/08/dear-localbank-that-i-use.html/comment-page-1#comment-6005</link>
		<dc:creator>Dan Weber</dc:creator>
		<pubDate>Thu, 06 Aug 2009 14:10:13 +0000</pubDate>
		<guid isPermaLink="false">http://emergentchaos.com/?p=3185#comment-6005</guid>
		<description>)
Now I remember that Silvo Micali taught me about probabilistic encryption while I was in grad school, so I&#039;m suitably humbled.
Although I&#039;m not sure, off hand, that you can combine a one-way hash with probabilistic encryption in a non-ugly way. Might just be a failure of my imagination, though.
</description>
		<content:encoded><![CDATA[<p>)<br />
Now I remember that Silvo Micali taught me about probabilistic encryption while I was in grad school, so I&#8217;m suitably humbled.<br />
Although I&#8217;m not sure, off hand, that you can combine a one-way hash with probabilistic encryption in a non-ugly way. Might just be a failure of my imagination, though.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dan Weber</title>
		<link>http://emergentchaos.com/archives/2009/08/dear-localbank-that-i-use.html/comment-page-1#comment-6004</link>
		<dc:creator>Dan Weber</dc:creator>
		<pubDate>Thu, 06 Aug 2009 11:45:24 +0000</pubDate>
		<guid isPermaLink="false">http://emergentchaos.com/?p=3185#comment-6004</guid>
		<description>On one hand, I was really surprised when Bank Of America/Fleet/BankBoston/BayBank went through some merger and sent me a letter with my PIN in it.
On the other hand, would one-way encryption really help any?  If you get a hold of the encrypted passwords and know the algorithm, even if it&#039;s a custom algorithm and a custom salt for each and every account, it&#039;s trivial to run through the 10^6 combinations.
(As another aisde: I first set up my account with an 8-digit pin. Classmates pointed out that you only needed the first 4 digits, and sure enough you did. But after one of the mergers, it changed to needing the first &lt;b&gt;six&lt;/b&gt; characters, so I had to re-learn the mnemonic I used to set it up, since I hadn&#039;t used characters 5 &amp; 6 in years.
</description>
		<content:encoded><![CDATA[<p>On one hand, I was really surprised when Bank Of America/Fleet/BankBoston/BayBank went through some merger and sent me a letter with my PIN in it.<br />
On the other hand, would one-way encryption really help any?  If you get a hold of the encrypted passwords and know the algorithm, even if it&#8217;s a custom algorithm and a custom salt for each and every account, it&#8217;s trivial to run through the 10^6 combinations.<br />
(As another aisde: I first set up my account with an 8-digit pin. Classmates pointed out that you only needed the first 4 digits, and sure enough you did. But after one of the mergers, it changed to needing the first <b>six</b> characters, so I had to re-learn the mnemonic I used to set it up, since I hadn&#8217;t used characters 5 &amp; 6 in years.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: C</title>
		<link>http://emergentchaos.com/archives/2009/08/dear-localbank-that-i-use.html/comment-page-1#comment-6003</link>
		<dc:creator>C</dc:creator>
		<pubDate>Wed, 05 Aug 2009 16:28:57 +0000</pubDate>
		<guid isPermaLink="false">http://emergentchaos.com/?p=3185#comment-6003</guid>
		<description>Banks without good security? Pfft, next you&#039;ll say that Mac&#039;s aren&#039;t secure!
/sarcasm off
</description>
		<content:encoded><![CDATA[<p>Banks without good security? Pfft, next you&#8217;ll say that Mac&#8217;s aren&#8217;t secure!<br />
/sarcasm off</p>
]]></content:encoded>
	</item>
</channel>
</rss>

