Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add test case for Invalid Curve Attack #15

Open
Merenon opened this issue Jan 28, 2017 · 3 comments
Open

Add test case for Invalid Curve Attack #15

Merenon opened this issue Jan 28, 2017 · 3 comments

Comments

@Merenon
Copy link
Contributor

Merenon commented Jan 28, 2017

The go-jose library was found to be vulnerable against Invalid Curve Attacks.

Add test cases to check this.

http://www.openwall.com/lists/oss-security/2016/11/03/1
square/go-jose@c758193

@Merenon
Copy link
Contributor Author

Merenon commented Apr 2, 2017

Work in progress: attack/invalid-curve

@Merenon
Copy link
Contributor Author

Merenon commented Jan 14, 2019

Update: work resumed, final implementation expected April/May 2019.

@Merenon
Copy link
Contributor Author

Merenon commented Feb 23, 2020

See #23. Thanks @vunsel

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

1 participant