Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

A hundred thousand pairs of eyes might not spot a deliberate side channel inserted in a crypto implementation.


Yes, obviously. And given the OBSD team's track record on meticulousness and attention to detail in ironing out these specific creases, I think I know what the majority of bets on this one will be.


The OpenBSD team's track record has very little to do with intricate crypto vulnerabilities. This is a different kind of vulnerability research.


So what will find and fix vulnerabilities in crypto implementations?


Nothing we know of. Sleep tight!




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: