How many nails does that coffin need?

  • toneverends
    link
    fedilink
    arrow-up
    4
    ·
    2 years ago

    Shenanigans galore in gnupg:

    The cryptographers who wrote the paper […] note that the Libgcrypt maintainers at one point rejected a fix that would have thwarted the extraction of key information: “However, the maintainers refused a patch to switch from sliding windows to fixed windows; they said that this was unnecessary to stop the attacks.”

    Breaking Libgcrypt RSA via a side channel