-
@pwnsdx @webtonull @manicode CBC is doomed : blog.cloudflare.com/padding-oracles-and-the-decline-of-cbc-mode-ciphersuites/ Only AEAD ciphers must be used today.
-
@pwnsdx @webtonull @manicode EtM is difficult to implement correctly because it use 2 random stream which must be totally independant.
-
@pwnsdx @webtonull @manicode AES-GCM is easier, but a tiny error can fallback the overall algorithm to just XORed plain text !
aeris22’s Twitter Archive—№ 44,164