The effect is that after generating 256GiB of cipher stream, the cipher will generate incorrect output and then cycle back and generate the same data it began with. Now to be clear, Salsa20 was not designed to be used for more than 4Kib at a time, @hashbreaker very clearly warns!
-
-
The best thing about working in networking instead of storage is that nobody ever comes and asks you to recover some packets that got lost a while back.
-
You must have better customers than I did at my first ISP gig.
- 1 more reply
New conversation -
-
-
@threadreaderapp kindly unroll -
Hello, please find the unroll here: Thread by
@colmmacc: "Late night emergency thread about this super interesting bug in Salsa20 because it is a case where MAC-then-Encrypt is b […]" https://threadreaderapp.com/thread/1108580370096840705.html … Talk to you soon.
End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.