|
You are here |
soatok.blog | ||
| | | | |
scottarc.blog
|
|
| | | | | This isn't (necessarily) a security vulnerability; merely an observation that I don't think has been articulated adequately within the cryptography community. I thought it would be worth capturing somewhere public so that others can benefit from a small insight when designing cryptosystems. Background Once upon a time, there was Symmetric Encryption, which provided confidentiality, but... | |
| | | | |
www.famkos.net
|
|
| | | | | Kurz nach dem Start | |
| | | | |
blog.hboeck.de
|
|
| | | | | [AI summary] A technical deep-dive into a security vulnerability in Owncloud's server-side encryption module, specifically analyzing how malleable Cipher Feedback (CFB) mode allowed an attacker to inject arbitrary DOS executable code into shared Windows files. | |
| | | | |
guidovranken.com
|
|
| | | Larry Stefonic of wolfSSL contacted me after he'd noticed my project for fuzzing cryptographic libraries called Cryptofuzz. We agreed that I would write a Cryptofuzz module for wolfSSL. I activated the wolfSSL module for Cryptofuzz on Google's OSS-Fuzz, where it has been running 24/7 since. So far, Cryptofuzz has found a total of 8 bugs... | ||