• Constant Pain@lemmy.world
    link
    fedilink
    arrow-up
    14
    arrow-down
    2
    ·
    21 hours ago

    It’s not security through obscurity in this case. The filenames can’t be obtained or guessed through brute force. At least not with current technology or processing power…

    Security through obscurity is when you hide implementation details.

    Saying that my suggestion is security through obscurity is the same as telling that ASLR is security through obscurity…

    • Scrappy@feddit.nl
      link
      fedilink
      arrow-up
      1
      ·
      3 hours ago

      Until the psuedo random UUID generator can be reverse engineered. Makes me think of this video: https://youtu.be/o5IySpAkThg

      Anyway, I think we’re on the same wavelength and both agree that the implementation as is isn’t production-ready to say the least ;)