Mini-thread: Congratulations to @eyalr0, @yuvalyarom, and @cryptodavidw on finding more cache attacks against TLS implementations. It's at http://cat.eyalro.net/ ! This is incredible boundary-pushing work that really goes deep and clearly took a lot of effort!
-
-
We also have a patch for OpenSSL that adds a new mode that's safe by default, but it's an API change. Anyway, that's it really :)
Show this threadThanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
Are you referring to RSA_NOPADDING or something else?
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.