@colmmacc Does SCRAM consider dropping/reordering frames to be in scope as a threat? It doesn't look like the current construction would handle an adversary like that, but I may be missing something obvious.
Replying to @reaperhulk
Some protocols tolerate frames being dropped or reordered, like DTLS, others like TLS don’t. Either way, protocols can use the AAD section to authenticate the expected frame number. SCRAM will be super defensive in that case.
7:50 AM - 11 Dec 2019
from Seattle, WA
0 replies
0 retweets
3 likes
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.