rethinkdb / cats-of-instagram

51 stars 22 forks source link

Use scmp for constant-time string comparisons. #1

Open chrisvariety opened 9 years ago

chrisvariety commented 9 years ago

I applaud the inclusion of any security in a demo project such as this. Because security is specifically mentioned in the blog post, I thought it might be good to tighten it up just a notch to minimize vulnerability against timing attacks.

You may want to consider updating the blog post as well.

ps. apologies for the whitespace truncation that snuck in there, my editor did that automatically. here's a koala: :koala: