Infosec.Pub
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
digicatM to blueteamsecEnglish · 4 days ago

Carelessness versus craftsmanship in cryptography

blog.trailofbits.com

external-link
message-square
0
link
fedilink
  • cross-posted to:
  • hackernews@lemmy.bestiver.se
2
external-link

Carelessness versus craftsmanship in cryptography

blog.trailofbits.com

digicatM to blueteamsecEnglish · 4 days ago
message-square
0
link
fedilink
  • cross-posted to:
  • hackernews@lemmy.bestiver.se
Two popular AES libraries (aes-js and pyaes) provide dangerous default IVs that lead to key/IV reuse vulnerabilities affecting thousands of projects. One maintainer dismissed the issue, while strongSwan’s maintainer exemplified proper security response by comprehensively fixing the vulnerability in their VPN management tool.
alert-triangle
You must log in or # to comment.

blueteamsec

blueteamsec

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !blueteamsec@infosec.pub

For [Blue|Purple] Teams in Cyber Defence - covering discovery, detection, response, threat intelligence, malware, offensive tradecraft and tooling, deception, reverse engineering etc.

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 19 users / day
  • 144 users / week
  • 369 users / month
  • 968 users / 6 months
  • 228 local subscribers
  • 643 subscribers
  • 2.51K Posts
  • 203 Comments
  • Modlog
  • mods:
  • digicat
  • BE: 0.19.13
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org