You need to remember that cryptography is a branch of information security. When you forget, you get Telegram: http://unhandledexpression.com/2013/12/17/telegram-stand-back-we-know-maths/ …
@matthew_d_green pretty much a textbook example of how not to handle feedback on crypto software toi
-
-
@bascule I've never seen such a consistently poor set of decisions made in a single project. -
@matthew_d_green@bascule Perhaps we should write a friendly pocket guide for doing AE; getting this right should be a non-problem. -
@justintroutman@matthew_d_green I think the best advice is probably "just use an AEAD mode" -
@bascule@matthew_d_green I'm working on a piece about it; if you're interested in seeing a draft (soon), I'll be glad to send it. -
@justintroutman@matthew_d_green I'd be interested
End of conversation
New conversation -
-
-
@bascule I mean it's actually kind of brilliant in a sick way. They re-invented their own crazy way to perform message authentication. -
@bascule Someone obviously never taught them what a MAC is, so they cooked something insane up. -
@matthew_d_green@bascule I just love their attitude in the comments, such ignorance presented with such an attitude of infallibility…
End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.