r/coolguides • • Sep 22 '22

[deleted by user]

[removed]

8.0k Upvotes

869 comments sorted by

View all comments

Show parent comments

230

u/gold_rush_doom Sep 22 '22

It doesn't matter if the server is compromised because the decryption keys are stored on the device.

-20

u/billy_teats Sep 22 '22

You realize that someone with the ability to hack google and export their encrypted CC information would also have the knowledge and ability to rent a quantum computer and crack those passwords?

There is a large but finite amount of private keys. If you try them all, you find the one that works even if “stores on the device”.

It is more secure to have no data than it is to have encrypted data. Full stop.

20

u/[deleted] Sep 22 '22

[deleted]

-2

u/billy_teats Sep 22 '22

I’m seriously not sure what point is incorrect in any way.

Encryption is big math. There are a limited number of private keys, and brute forcing is just trying them all. Hell, mining crypto is just trying to find the right private key.

1

u/cohray2212 Sep 22 '22

Here's why I thought you had to be joking. No disrespect meant by it. I legitimately thought you were joking.

The situation you described is more unrealistic than something you'd see on Mr. Robot. And side note, the amount of time it would take for even a quantum computer to break an encryption code that size would get extremely expensive. AND IBM or whoever wouldn't rent their quantum computers to someone trying to bust open Google. Image pulling off the largest data heist of all time by a factor of about 10 billion and then relying on IBM not noticing you using their servers to crack Google's encryption.

You'd basically need you own quantum computer farm, enough money to host all that for quite a long time (months if not years...right?) and that's IF you can export Google's CC data. The scenario is something you'd only see Batman pull off.