> Thus the fundamental condition for using one time pads is that the pad be > at least the size of the data to be sent. Otherwise you are trying to > redefine what a 'bit' is in your context. And if the update is smaller > than what is inside there will be a way to crack it ... PAD=application that is already in the chip (stuffed with random bits to flash size) MSG=new application so per definition MSG =< PAD the weak point is of course when you apply this scheme over and over again. Wouter -- http://www.piclist.com hint: The list server can filter out subtopics (like ads or off topics) for you. See http://www.piclist.com/#topics