Lemmy: Bestiverse
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
RSS BotMB to Hacker NewsEnglish · 14 days ago

Carelessness versus Craftsmanship in Cryptography

blog.trailofbits.com

external-link
message-square
0
link
fedilink
2
external-link

Carelessness versus Craftsmanship in Cryptography

blog.trailofbits.com

RSS BotMB to Hacker NewsEnglish · 14 days ago
message-square
0
link
fedilink
Carelessness versus craftsmanship in cryptography
blog.trailofbits.com
external-link
Two popular AES libraries (aes-js and pyaes) provide dangerous default IVs that lead to key/IV reuse vulnerabilities affecting thousands of projects. One maintainer dismissed the issue, while strongSwan’s maintainer exemplified proper security response by comprehensively fixing the vulnerability in their VPN management tool.

Comments

alert-triangle
You must log in or # to comment.

Hacker News

hackernews

Subscribe from Remote Instance

You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !hackernews@lemmy.bestiver.se
lock
Community locked: only moderators can create posts. You can still comment on posts.

Posts from the RSS Feed of HackerNews.

The feed sometimes contains ads and posts that have been removed by the mod team at HN.

Source of the RSS Bot

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 810 users / day
  • 2.03K users / week
  • 4.04K users / month
  • 9.49K users / 6 months
  • 2 local subscribers
  • 4.47K subscribers
  • 45.3K Posts
  • 22.3K Comments
  • Modlog
  • mods:
  • patrick
  • RSS Bot
  • BE: 0.19.15
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org