Posts about cryptography
- How (not) to sign a JSON object
- The PGP problem
- Analyzing a simple encryption scheme using GitHub SSH keys
- The default OpenSSH key encryption is worse than plaintext
- A child's garden of inter-service authentication schemes
- Cryptographic right answers
- Crypto APIs and JVM byte types
- Tradeoffs in cryptographic API design
- Nonce misuse resistance 101
- Supersingular isogeny Diffie-Hellman 101
- Securing APIs with shims
- On discussing software security improvements
- TrueCrypt and full-disk encryption
- Thoughts on RDRAND in Linux