February 09, 2007
Snake Oil
The term Snake Oil is one that I find increasingly humorous, and worthy of talking about. Snake Oil is often applied to cryptography in the computer security industry, as in, "their algorithm promises the equivalent of 4096-bit RSA using only a 40-bit symmetric key, and promises to run through blocks faster than DES." And so on. Often the claims are unbelievable and unbelieved.
What is so funny is that Snake Oil actually works. The derogative use of the phrase was pushed by sellers of other pain relievers back in the day. I guess the only question I ask is: What is Schneier trying to sell us?
Post a comment







by reid
on October 01, 2007
by reid
on July 17, 2005