oh mozilla has finally made this vuln public https://www.mozilla.org/en-US/security/advisories/mfsa2016-07/ … another carry propagation bug found via afl
@hanno Importantly, there are much safer (and faster) ways to implement that function for prime-field-order and frome-group-order curves.
-
-
@BRIAN_____ ? I don't understand. curves? This is not an ec function, it's the normal integer division that has a bug.Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
@hanno With prime-order ECC math, you can avoid ever needing to do division/modulus, even during inversion.Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
@hanno Also, you're doing awesome work!Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.